• Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
  • Sign in
  • Sign up
  • Home
  • Search Jobs
  • Register CV
  • Post a Job
  • Employer Pricing
  • Contact Us
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

95 jobs found

Email me jobs like this
Refine Search
Current Search
cyber assurance specialist
Senior Construction Assurance Manager
Snc-Lavalin Birmingham, Staffordshire
Job Description Overview The Senior Construction Assurance Manager will provide support to the HS2 NEC3 Project Manager and be accountable for providing specialist constructability support and expertise at each stage of the construction process. The post holder will also undertake a risk based approach to the assurance of the constructability of the Works, whilst maintaining standards of health and safety, and supporting the required project delivery outcomes, namely, quality, environmental impact, Undertakings and Assurance obligations. The post-holder will work closely with the HS2 NEC3 Supervisor, the HS2 Compliance and Assurance Manager, and the Stakeholder and Interfaces Manager in undertaking their role. Your role In line with the HS2 client model, lead and manage performance of the directorate and the supply chain to deliver the integrated design, engineering, planning and delivery for Construction. Integrate and manage interfaces including relevant strategic and local stakeholders to enable the effective delivery of Construction. Ensure we meet our requirements in accordance with the obligations set out in the Development Agreement and any associated Undertakings and Assurances. Accountable for Constructability Assurance, taking a risk-based approach by reviewing processes and plans that are considered to be high risk to HS2. Accountable for providing specialist advice and expertise at all stages of the construction process to the NEC 3 Project Manager in administering the contract. Responsible for managing the HS2 Control Point Process. Responsible for facilitating safety tours and other site based HS2 safety practices. Responsible for supporting the NEC3 Project Manager in discharging their duties. Responsible for supporting the NEC3 Supervisor in discharging their duties. Responsible for supporting the functional teams in assuring that the works are adhering to U&A's, EMR and CoCP requirements. Responsible for supporting HS2 cross contract interfaces with respect to constructability. Actively promote and embed Equality Diversity and Inclusion (EDI) in all your work, and support and comply with all organisational initiatives, policies and procedures on EDI. About you Skills Conflict Management - Reads situations quickly; good at focused listening; can find common ground and get cooperation and constructive outcomes with minimum noise. Decision Quality - Gathering and synthesising Clear Direction - Defining and prioritising objectives, analysing inputs, assessing and challenging data, defining strategies and supporting rationales. Knowledge Best practice IPT management principles and matrix organisations. Applicable UK construction regulations including Construction Design Management (CDM) and (Construction Safety Management) CSM requirements. Knowledge and experience of site-based processes and procedures for health, safety, environmental and environmental management. Demonstrable record evidencing knowledge of construction methodology. Supply chain sectors across various geographies and industries (incl. civil, construction and rail). Type of Experience Proven experience in managing and administering contracts, preferably NEC. Proven construction experience gained across a range of large-scale projects, with a sound understanding of construction planning. Degree level qualification in civil engineering, construction or building science or the equivalent experience. Rewards & benefits Explore the rewards and benefits that help you thrive - at every stage of your life and your career. Enjoy competitive salaries, employee rewards and a brilliant range of benefits you can tailor to suit your own health, wellbeing, financial and lifestyle choices. Make the most of a myriad of opportunities for training and professional development to grow your skills and expertise. And combine our hybrid working culture and flexible holiday allowances to balance a great job and fulfilling personal life. Be rewarded. Security clearance This role may require security clearance and offers of employment will be dependent on obtaining the relevant level of clearance. If this is necessary, it will be discussed with you at interview. The vetting process is delivered by United Kingdom Security Vetting (UKSV) and may require candidates to provide proof of residency in the UK of 5 years or longer. If applying to this role please do not make reference to (in conversation) or include in your application or CV, details of any current or previously held security clearance. We are committed to creating a culture where everyone feels that they belong - a place where we can all be ourselves, thrive and develop to be the best we can be. So, we offer a range of family friendly, inclusive employment policies, flexible working arrangements and employee resource groups to support all employees. As an Equal Opportunities Employer, we value applications from all backgrounds, cultures and ability. About AtkinsRéalis We're AtkinsRéalis, a world-class engineering services and nuclear organization. We connect people, data and technology to transform the world's infrastructure and energy systems. Together, with our industry partners and clients, and our global team of consultants, designers, engineers and project managers, we can change the world. We're committed to leading our clients across our various end markets to engineer a better future for our planet and its people. Worker Type Employee Job Type Regular At AtkinsRéalis, we seek to hire individuals with diverse characteristics, backgrounds and perspectives. We strongly believe that world-class talent makes no distinctions based on gender, ethnic or national origin, sexual identity and orientation, age, religion or disability, but enriches itself through these differences. Created by the integration of long-standing organizations dating back to 1911, AtkinsRéalis is a world-class engineering services and nuclear company dedicated to engineering a better future for our planet and its people. We create sustainable solutions that connect people, data and technology to transform the world's infrastructure and energy systems. We deploy global capabilities locally to our clients and deliver unique end-to-end services across the whole life cycle of an asset including consulting, advisory & environmental services, intelligent networks & cybersecurity, design & engineering, procurement, project & construction management, operations & maintenance, decommissioning and capital. The breadth and depth of our capabilities are delivered to clients in strategic sectors such as Engineering Services, Nuclear and Capital. News and information are available at Atkinsrealis or follow us on LinkedIn.
Aug 26, 2026
Full time
Job Description Overview The Senior Construction Assurance Manager will provide support to the HS2 NEC3 Project Manager and be accountable for providing specialist constructability support and expertise at each stage of the construction process. The post holder will also undertake a risk based approach to the assurance of the constructability of the Works, whilst maintaining standards of health and safety, and supporting the required project delivery outcomes, namely, quality, environmental impact, Undertakings and Assurance obligations. The post-holder will work closely with the HS2 NEC3 Supervisor, the HS2 Compliance and Assurance Manager, and the Stakeholder and Interfaces Manager in undertaking their role. Your role In line with the HS2 client model, lead and manage performance of the directorate and the supply chain to deliver the integrated design, engineering, planning and delivery for Construction. Integrate and manage interfaces including relevant strategic and local stakeholders to enable the effective delivery of Construction. Ensure we meet our requirements in accordance with the obligations set out in the Development Agreement and any associated Undertakings and Assurances. Accountable for Constructability Assurance, taking a risk-based approach by reviewing processes and plans that are considered to be high risk to HS2. Accountable for providing specialist advice and expertise at all stages of the construction process to the NEC 3 Project Manager in administering the contract. Responsible for managing the HS2 Control Point Process. Responsible for facilitating safety tours and other site based HS2 safety practices. Responsible for supporting the NEC3 Project Manager in discharging their duties. Responsible for supporting the NEC3 Supervisor in discharging their duties. Responsible for supporting the functional teams in assuring that the works are adhering to U&A's, EMR and CoCP requirements. Responsible for supporting HS2 cross contract interfaces with respect to constructability. Actively promote and embed Equality Diversity and Inclusion (EDI) in all your work, and support and comply with all organisational initiatives, policies and procedures on EDI. About you Skills Conflict Management - Reads situations quickly; good at focused listening; can find common ground and get cooperation and constructive outcomes with minimum noise. Decision Quality - Gathering and synthesising Clear Direction - Defining and prioritising objectives, analysing inputs, assessing and challenging data, defining strategies and supporting rationales. Knowledge Best practice IPT management principles and matrix organisations. Applicable UK construction regulations including Construction Design Management (CDM) and (Construction Safety Management) CSM requirements. Knowledge and experience of site-based processes and procedures for health, safety, environmental and environmental management. Demonstrable record evidencing knowledge of construction methodology. Supply chain sectors across various geographies and industries (incl. civil, construction and rail). Type of Experience Proven experience in managing and administering contracts, preferably NEC. Proven construction experience gained across a range of large-scale projects, with a sound understanding of construction planning. Degree level qualification in civil engineering, construction or building science or the equivalent experience. Rewards & benefits Explore the rewards and benefits that help you thrive - at every stage of your life and your career. Enjoy competitive salaries, employee rewards and a brilliant range of benefits you can tailor to suit your own health, wellbeing, financial and lifestyle choices. Make the most of a myriad of opportunities for training and professional development to grow your skills and expertise. And combine our hybrid working culture and flexible holiday allowances to balance a great job and fulfilling personal life. Be rewarded. Security clearance This role may require security clearance and offers of employment will be dependent on obtaining the relevant level of clearance. If this is necessary, it will be discussed with you at interview. The vetting process is delivered by United Kingdom Security Vetting (UKSV) and may require candidates to provide proof of residency in the UK of 5 years or longer. If applying to this role please do not make reference to (in conversation) or include in your application or CV, details of any current or previously held security clearance. We are committed to creating a culture where everyone feels that they belong - a place where we can all be ourselves, thrive and develop to be the best we can be. So, we offer a range of family friendly, inclusive employment policies, flexible working arrangements and employee resource groups to support all employees. As an Equal Opportunities Employer, we value applications from all backgrounds, cultures and ability. About AtkinsRéalis We're AtkinsRéalis, a world-class engineering services and nuclear organization. We connect people, data and technology to transform the world's infrastructure and energy systems. Together, with our industry partners and clients, and our global team of consultants, designers, engineers and project managers, we can change the world. We're committed to leading our clients across our various end markets to engineer a better future for our planet and its people. Worker Type Employee Job Type Regular At AtkinsRéalis, we seek to hire individuals with diverse characteristics, backgrounds and perspectives. We strongly believe that world-class talent makes no distinctions based on gender, ethnic or national origin, sexual identity and orientation, age, religion or disability, but enriches itself through these differences. Created by the integration of long-standing organizations dating back to 1911, AtkinsRéalis is a world-class engineering services and nuclear company dedicated to engineering a better future for our planet and its people. We create sustainable solutions that connect people, data and technology to transform the world's infrastructure and energy systems. We deploy global capabilities locally to our clients and deliver unique end-to-end services across the whole life cycle of an asset including consulting, advisory & environmental services, intelligent networks & cybersecurity, design & engineering, procurement, project & construction management, operations & maintenance, decommissioning and capital. The breadth and depth of our capabilities are delivered to clients in strategic sectors such as Engineering Services, Nuclear and Capital. News and information are available at Atkinsrealis or follow us on LinkedIn.
HMRC
Chief Security Officer
HMRC Birmingham, Staffordshire
About the job Job summary Reporting to the Chief Digital and Information Officer (CDIO), the Chief Security Officer is a core member of the CDIO Senior Leadership Team, with overarching responsibility for safeguarding HMRC's information assets, managing security and data protection risks, and setting enterprise-wide security policies and standards across cyber, information, personnel and physical security. This role offers a unique opportunity to influence HMRC's security agenda across wider government. Job description Security Operations & Risk Management Deliver a range of technical security services across HMRC in an agile and risk-informed way, enabling the organisation to operate securely and effectively at scale. Ensure security and privacy is by design and implementation and that appropriate controls exist throughout CDIO and the wider HMRC business. Strengthen HMRC's personnel security position by designing and implementing an appropriate personnel security framework. Establishes enterprise-level physical security policy, standards, and assurance frameworks; day-to-day operations are managed by HMRC's Estates function. Drive the implementation and monitoring of compliance to relevant regulatory and government requirements (e.g., NCSC, ISO 27001). Oversee the identification, evaluation, and reporting of legal and regulatory, IT, and cyber security risk to information assets. Liaise with other functions (Finance, HR, Legal, Ethics) and third parties to ensure security and data protection risks are understood, considered, and satisfactorily mitigated. Threat Response & Innovation Strategic leadership to identify, understand and effectively address emerging threats such as AI attacks, ransomware, and supply chain vulnerabilities. Ensure appropriate response to security incidents and drive continuous improvements by learning from them. Drive innovation in security technologies such as Zero Trust architecture and secure AI adoption. Governance, Architecture, and Influence Facilitate an appropriate security governance structure; provide regular reporting on the status of the security and data protection programme to senior leaders, including the Executive Committee and Audit and Risk Committee. Work with the Head of Architecture and Innovation to build alignment between the security and enterprise architectures. Implement and drive policy changes across HMRC and the wider government. Represent HMRC on relevant cross-government boards and engage with the Government Security Group to influence and help deliver the cyber, physical and personnel security policy agenda across government. Liaise with external agencies, such as law enforcement and other advisory bodies, including National Technical Authorities. Build and nurture external networks consisting of peers in government and industry to address common trends, findings, incidents, and cybersecurity risks. Accountability & Public Trust Define and report on security performance metrics to demonstrate accountability and effectiveness. Promote public trust through transparent security practices and effective communication. Person specification Essential Criteria: Professional Expertise & Standards - demonstrates a deep and current understanding of information security principles, technologies, and control frameworks. This is evidenced by relevant security qualifications and practical experience, alongside professional certifications such as CISSP, CISM, or equivalent. Shows a strong commitment to delivering against recognised industry standards and best practices. Executive Security Leadership - proven strategic leadership in managing security, risk and compliance across large, complex organisations and technology environments. Brings an outstanding track record of shaping and delivering enterprise-wide security programmes that support organisational resilience and regulatory compliance. Technical Authority & Innovation - extensive technical expertise across multiple domains of security and compliance, with the ability to exercise independent judgment and make high-impact decisions. Demonstrates a forward-looking approach to emerging threats, including experience in researching and implementing innovative solutions such as Zero Trust architectures, secure AI, and other cutting-edge security models. Strategic Influence & Stakeholder Management - exceptional influencing, negotiation, and relationship-building skills, with a proven ability to engage and maintain trust with senior stakeholders across government, industry, and third-party providers. Able to align security strategy with broader organisational goals through effective cross-functional collaboration. Organisational Change & Vision - demonstrable experience in anticipating and preparing for major organisational or technological shifts, including emerging cyber threats. Confidently leads through uncertainty, ensuring the organisation remains agile and informed. Team Leadership & Development - proven ability to build, lead, and develop high-performing teams across multiple locations. Skilled in empowering senior managers and specialists within the security and compliance disciplines, fostering a culture of excellence, accountability, and continuous improvement. Benefits Alongside your salary of £150,000, HM Revenue and Customs contributes £43,455 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). Learning and development tailored to your role An environment with flexible working options A culture encouraging inclusion and diversity A Civil Service pension with an employer contribution of 28.97% Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use. Selection process details For full selection process details please see attached Candidate Pack. Feedback will only be provided if you attend an interview or assessment. This role has a minimum assignment duration of 3 years. An assignment duration is the period of time a Senior Civil Servant is expected to remain in the same post to enable them to deliver on the agreed key business outcomes. The assignment duration also supports your career through building your depth of expertise. As part of accepting this role you will be agreeing to the expected assignment duration set out above. This will not result in a contractual change to your terms and conditions. Please note this is an expectation only, it is not something which is written into your terms and conditions or indeed which the employing organisation or you are bound by. It will depend on your personal circumstances at a particular time and business needs, for example, would not preclude any absence like family friendly leave. It is nonetheless an important expectation, which is why we ask you to confirm you agree to the assignment duration set out above. Security Successful candidates must undergo a standard (or equivalent) criminal record check. Successful candidates must meet the security requirements before they can be appointed. The level of security needed is developed vetting (opens in a new window). See our vetting charter (opens in a new window). People working with government assets must complete baseline personnel security standard (opens in new window) checks. Nationality requirements This job is broadly open to the following groups: UK nationals nationals of the Republic of Ireland nationals of Commonwealth countries who have the right to work in the UK nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window) nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS) individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020 Turkish nationals, and certain family members of Turkish nationals, who have accrued the right to work in the Civil Service Further information on nationality requirements (opens in a new window) Working for the Civil Service The Civil Service Code (opens in a new window) sets out the standards of behaviour expected of civil servants. We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window). The Civil Service embraces diversity and promotes equal opportunities . click apply for full job details
Aug 26, 2026
Full time
About the job Job summary Reporting to the Chief Digital and Information Officer (CDIO), the Chief Security Officer is a core member of the CDIO Senior Leadership Team, with overarching responsibility for safeguarding HMRC's information assets, managing security and data protection risks, and setting enterprise-wide security policies and standards across cyber, information, personnel and physical security. This role offers a unique opportunity to influence HMRC's security agenda across wider government. Job description Security Operations & Risk Management Deliver a range of technical security services across HMRC in an agile and risk-informed way, enabling the organisation to operate securely and effectively at scale. Ensure security and privacy is by design and implementation and that appropriate controls exist throughout CDIO and the wider HMRC business. Strengthen HMRC's personnel security position by designing and implementing an appropriate personnel security framework. Establishes enterprise-level physical security policy, standards, and assurance frameworks; day-to-day operations are managed by HMRC's Estates function. Drive the implementation and monitoring of compliance to relevant regulatory and government requirements (e.g., NCSC, ISO 27001). Oversee the identification, evaluation, and reporting of legal and regulatory, IT, and cyber security risk to information assets. Liaise with other functions (Finance, HR, Legal, Ethics) and third parties to ensure security and data protection risks are understood, considered, and satisfactorily mitigated. Threat Response & Innovation Strategic leadership to identify, understand and effectively address emerging threats such as AI attacks, ransomware, and supply chain vulnerabilities. Ensure appropriate response to security incidents and drive continuous improvements by learning from them. Drive innovation in security technologies such as Zero Trust architecture and secure AI adoption. Governance, Architecture, and Influence Facilitate an appropriate security governance structure; provide regular reporting on the status of the security and data protection programme to senior leaders, including the Executive Committee and Audit and Risk Committee. Work with the Head of Architecture and Innovation to build alignment between the security and enterprise architectures. Implement and drive policy changes across HMRC and the wider government. Represent HMRC on relevant cross-government boards and engage with the Government Security Group to influence and help deliver the cyber, physical and personnel security policy agenda across government. Liaise with external agencies, such as law enforcement and other advisory bodies, including National Technical Authorities. Build and nurture external networks consisting of peers in government and industry to address common trends, findings, incidents, and cybersecurity risks. Accountability & Public Trust Define and report on security performance metrics to demonstrate accountability and effectiveness. Promote public trust through transparent security practices and effective communication. Person specification Essential Criteria: Professional Expertise & Standards - demonstrates a deep and current understanding of information security principles, technologies, and control frameworks. This is evidenced by relevant security qualifications and practical experience, alongside professional certifications such as CISSP, CISM, or equivalent. Shows a strong commitment to delivering against recognised industry standards and best practices. Executive Security Leadership - proven strategic leadership in managing security, risk and compliance across large, complex organisations and technology environments. Brings an outstanding track record of shaping and delivering enterprise-wide security programmes that support organisational resilience and regulatory compliance. Technical Authority & Innovation - extensive technical expertise across multiple domains of security and compliance, with the ability to exercise independent judgment and make high-impact decisions. Demonstrates a forward-looking approach to emerging threats, including experience in researching and implementing innovative solutions such as Zero Trust architectures, secure AI, and other cutting-edge security models. Strategic Influence & Stakeholder Management - exceptional influencing, negotiation, and relationship-building skills, with a proven ability to engage and maintain trust with senior stakeholders across government, industry, and third-party providers. Able to align security strategy with broader organisational goals through effective cross-functional collaboration. Organisational Change & Vision - demonstrable experience in anticipating and preparing for major organisational or technological shifts, including emerging cyber threats. Confidently leads through uncertainty, ensuring the organisation remains agile and informed. Team Leadership & Development - proven ability to build, lead, and develop high-performing teams across multiple locations. Skilled in empowering senior managers and specialists within the security and compliance disciplines, fostering a culture of excellence, accountability, and continuous improvement. Benefits Alongside your salary of £150,000, HM Revenue and Customs contributes £43,455 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). Learning and development tailored to your role An environment with flexible working options A culture encouraging inclusion and diversity A Civil Service pension with an employer contribution of 28.97% Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use. Selection process details For full selection process details please see attached Candidate Pack. Feedback will only be provided if you attend an interview or assessment. This role has a minimum assignment duration of 3 years. An assignment duration is the period of time a Senior Civil Servant is expected to remain in the same post to enable them to deliver on the agreed key business outcomes. The assignment duration also supports your career through building your depth of expertise. As part of accepting this role you will be agreeing to the expected assignment duration set out above. This will not result in a contractual change to your terms and conditions. Please note this is an expectation only, it is not something which is written into your terms and conditions or indeed which the employing organisation or you are bound by. It will depend on your personal circumstances at a particular time and business needs, for example, would not preclude any absence like family friendly leave. It is nonetheless an important expectation, which is why we ask you to confirm you agree to the assignment duration set out above. Security Successful candidates must undergo a standard (or equivalent) criminal record check. Successful candidates must meet the security requirements before they can be appointed. The level of security needed is developed vetting (opens in a new window). See our vetting charter (opens in a new window). People working with government assets must complete baseline personnel security standard (opens in new window) checks. Nationality requirements This job is broadly open to the following groups: UK nationals nationals of the Republic of Ireland nationals of Commonwealth countries who have the right to work in the UK nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window) nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS) individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020 Turkish nationals, and certain family members of Turkish nationals, who have accrued the right to work in the Civil Service Further information on nationality requirements (opens in a new window) Working for the Civil Service The Civil Service Code (opens in a new window) sets out the standards of behaviour expected of civil servants. We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window). The Civil Service embraces diversity and promotes equal opportunities . click apply for full job details
HMRC
IDVA Senior Policy and Standards Advisor
HMRC Manchester, Lancashire
About the job Job summary Discover a career in your hands at HMRC. Whether you're seeking purpose, growth, or a workplace that gives you a true sense of belonging, hear from some of our employees as they share their story about what it's really like to work at HMRC. Visit our YouTube channel to watch the full series and come and discover your potential. Our team is rapidly growing as we invest in new technologies and capabilities, and we are in search of enthusiastic individuals who can help us in achieving our mission. We are continually improving the service we give to our customers and, in line with this, we are creating a new response and management team within the HMRC Fraud Prevention Centre. The Fraud Prevention Centre (FPC) is a strategic capability within HMRC Security, designed to safeguard customers and the organisation against identity-related fraud and emerging threats. Its mission is built on three interconnected pillars: Protection, Detection, and Response, all underpinned by advanced threat intelligence and customer support. The Centre operates across multiple functional areas, including Proactive Protection, Customer Support & Response, and Strategy & Advisory, to deliver a holistic approach to fraud prevention. Job description You will play a leading role in the day-to-day delivery of HMRC's identity policy and standards service within the Fraud Prevention Centre (FPC), reporting to the G7 Implementation Lead. Collaborating with senior leaders and partners across HMRC, you will help define, maintain, and improve the policies, standards, principles, and guidance that support the management of identity, access, and fraud risks. The role covers identity fraud prevention, identity verification and assurance (IDVA), and identity and access management (IAM), ensuring requirements are clear, proportionate, and capable of being translated into practical delivery across services, channels, customer journeys and enabling technologies. You will function as an authoritative source of advice and good practice, helping policy owners, security, risk, assurance, implementation, and service teams understand and apply identity-related requirements. Working closely with the G7 Implementation Lead, you will support the implementation and embedding of identity-related change by identifying gaps, delivery barriers, and risks, and by providing evidence-based advice, challenge, and recommendations. You will also help maintain FPC and IDVA as a recognised centre of expertise for identity policy, standards and governance, supporting HMRC's contribution to wider security, risk, compliance and cross-government identity standards activity, and helping ensure identity, assurance, access and fraud prevention requirements are reflected in relevant frameworks and governance products. Person specification Ensure identity policy, standards and guidance are clear, current, and usable by leading the delivery, maintenance and continuous improvement of defined products covering IDVA, IAM and identity fraud prevention. Translate policy intent, standards and emerging requirements into practical delivery expectations that can be applied across projects, services, customer journeys, and live operational processes. Support the G7 Implementation Lead to embed identity fraud-related change into delivery and live operations, including readiness activity, adoption tracking, capability-building, and transition to business-as-usual. Provide authoritative, evidence-based advice and constructive challenge to help stakeholders make proportionate, risk-based, and defensible decisions. Strengthen stakeholder understanding and ownership of identity, access, and fraud prevention requirements, identifying gaps, blockers, or escalation points where requirements are not being effectively understood, implemented, or evidenced. Strengthen governance, assurance, and reporting by producing clear briefings, guidance, risk summaries and evidence of progress, adoption, risks, issues, and early benefits. Represent the identity policy and standards perspective in working groups, project discussions, governance forums and wider standards activity, preparing analysis, evidence and recommendations that help influence HMRC and cross-government standards and ensure identity, assurance, access, and fraud prevention requirements are reflected in wider security, risk, compliance, and governance frameworks. Essential Criteria Strong understanding of identity policy, Identity and Access Management digital identity assurance, identity fraud prevention principles, standards, and governance. Experience developing, maintaining, or owning policy, standards, guidance, or assurance products in complex environments. Knowledge of relevant identity, access management, cyber security, and assurance standards, such as NIST 800-63, NIST 800-53, UK DIATF and Government Counter Fraud Standards, with the ability to apply them proportionately in FPC and IDVA policy, governance, assurance, and delivery contexts. Ability to interpret technical , policy, risk and operational requirements and translate them into clear, practical standards, guidance, and delivery expectations. Strong stakeholder engagement, written communication and influencing skills, with confidence to advise, explain, challenge, and produce clear products for senior and non-specialist audiences. Ability to use evidence, risk information, assurance findings, and management information to identify gaps, support implementation, track adoption and recommend improvements Desirable Criteria Familiarity with fraud prevention and cyber security identity assurance, or IAM frameworks and how they support proportionate policy and standards decisions. Experience supporting policy development, governance, assurance, or standards adoption within a regulated, security or public-sector environment. Relevant professional accreditation or equivalent experience in identity, security, information assurance, risk, data protection or change delivery. (e.g., CISM, CISSP, or IAM-specific qualifications). Understanding of digital identity technologies (e.g., MFA, federation, zero trust) and their relevance to practical policy implementation. Further Location Information Please ensure that you only apply for a location that you are willing and able to work from, as we will only make one offer of employment. Any additional notes included in a 'Further Location Preferences (optional)' field within the application form, will not be considered. Please be aware that you cannot change your location preference after submitting your application. Office Closures If your location preference is for one of the following sites, it's important to note that these are not long-term sites for HMRC and we will require you to move to a new building in the future, subject to our location strategy and the applicable employee policies at that time. For more information on where you might be working, review this information on our locations (opens in a new window) These sites are: Benton Park View, Newcastle - moving to Pilgrims Quarter, Newcastle Telford Plaza, Telford - moving to Parkside Court, Telford Trinity Bridge House, Salford - moving to an alternative office in Manchester/ Salford You will be given more information about what this means at the job offer stage. Leeds Location Moves Adjustment Payment will be available for this role, provided the successful applicant is a current HMRC colleague in Bradford and meets the eligibility requirements outlined in the HMRC's Moves Adjustment Payment guidance. Technical skills We'll assess you against these technical skills during the selection process: Knowledge of security policy and applying it within a delivery environment. Please see the associated framework linked in the interview section. Analysing data to develop guidance. Please see the associated framework linked in the interview section. Benefits Alongside your salary of £45,544, HM Revenue and Customs contributes £13,194 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). HMRC operates both Flexible and Hybrid Working policies, allowing you to balance your work and personal commitments. We welcome applications from those who need to work a more flexible arrangement and will agree to requests where possible, considering our operational and customer service needs. We offer a generous leave allowance, starting at 25 days and increasing by a day for every year of qualifying service up to a maximum of 30 days. Pension - We make contributions to our colleagues' Alpha pension equal to at least 28.97% of their salary. Family friendly policies. Personal support. Coaching and development. To find out more about HMRC benefits and find out what it's really like to work for HMRC hear from our insiders or visit Thinking of joining the Civil Service Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence . click apply for full job details
Aug 26, 2026
Full time
About the job Job summary Discover a career in your hands at HMRC. Whether you're seeking purpose, growth, or a workplace that gives you a true sense of belonging, hear from some of our employees as they share their story about what it's really like to work at HMRC. Visit our YouTube channel to watch the full series and come and discover your potential. Our team is rapidly growing as we invest in new technologies and capabilities, and we are in search of enthusiastic individuals who can help us in achieving our mission. We are continually improving the service we give to our customers and, in line with this, we are creating a new response and management team within the HMRC Fraud Prevention Centre. The Fraud Prevention Centre (FPC) is a strategic capability within HMRC Security, designed to safeguard customers and the organisation against identity-related fraud and emerging threats. Its mission is built on three interconnected pillars: Protection, Detection, and Response, all underpinned by advanced threat intelligence and customer support. The Centre operates across multiple functional areas, including Proactive Protection, Customer Support & Response, and Strategy & Advisory, to deliver a holistic approach to fraud prevention. Job description You will play a leading role in the day-to-day delivery of HMRC's identity policy and standards service within the Fraud Prevention Centre (FPC), reporting to the G7 Implementation Lead. Collaborating with senior leaders and partners across HMRC, you will help define, maintain, and improve the policies, standards, principles, and guidance that support the management of identity, access, and fraud risks. The role covers identity fraud prevention, identity verification and assurance (IDVA), and identity and access management (IAM), ensuring requirements are clear, proportionate, and capable of being translated into practical delivery across services, channels, customer journeys and enabling technologies. You will function as an authoritative source of advice and good practice, helping policy owners, security, risk, assurance, implementation, and service teams understand and apply identity-related requirements. Working closely with the G7 Implementation Lead, you will support the implementation and embedding of identity-related change by identifying gaps, delivery barriers, and risks, and by providing evidence-based advice, challenge, and recommendations. You will also help maintain FPC and IDVA as a recognised centre of expertise for identity policy, standards and governance, supporting HMRC's contribution to wider security, risk, compliance and cross-government identity standards activity, and helping ensure identity, assurance, access and fraud prevention requirements are reflected in relevant frameworks and governance products. Person specification Ensure identity policy, standards and guidance are clear, current, and usable by leading the delivery, maintenance and continuous improvement of defined products covering IDVA, IAM and identity fraud prevention. Translate policy intent, standards and emerging requirements into practical delivery expectations that can be applied across projects, services, customer journeys, and live operational processes. Support the G7 Implementation Lead to embed identity fraud-related change into delivery and live operations, including readiness activity, adoption tracking, capability-building, and transition to business-as-usual. Provide authoritative, evidence-based advice and constructive challenge to help stakeholders make proportionate, risk-based, and defensible decisions. Strengthen stakeholder understanding and ownership of identity, access, and fraud prevention requirements, identifying gaps, blockers, or escalation points where requirements are not being effectively understood, implemented, or evidenced. Strengthen governance, assurance, and reporting by producing clear briefings, guidance, risk summaries and evidence of progress, adoption, risks, issues, and early benefits. Represent the identity policy and standards perspective in working groups, project discussions, governance forums and wider standards activity, preparing analysis, evidence and recommendations that help influence HMRC and cross-government standards and ensure identity, assurance, access, and fraud prevention requirements are reflected in wider security, risk, compliance, and governance frameworks. Essential Criteria Strong understanding of identity policy, Identity and Access Management digital identity assurance, identity fraud prevention principles, standards, and governance. Experience developing, maintaining, or owning policy, standards, guidance, or assurance products in complex environments. Knowledge of relevant identity, access management, cyber security, and assurance standards, such as NIST 800-63, NIST 800-53, UK DIATF and Government Counter Fraud Standards, with the ability to apply them proportionately in FPC and IDVA policy, governance, assurance, and delivery contexts. Ability to interpret technical , policy, risk and operational requirements and translate them into clear, practical standards, guidance, and delivery expectations. Strong stakeholder engagement, written communication and influencing skills, with confidence to advise, explain, challenge, and produce clear products for senior and non-specialist audiences. Ability to use evidence, risk information, assurance findings, and management information to identify gaps, support implementation, track adoption and recommend improvements Desirable Criteria Familiarity with fraud prevention and cyber security identity assurance, or IAM frameworks and how they support proportionate policy and standards decisions. Experience supporting policy development, governance, assurance, or standards adoption within a regulated, security or public-sector environment. Relevant professional accreditation or equivalent experience in identity, security, information assurance, risk, data protection or change delivery. (e.g., CISM, CISSP, or IAM-specific qualifications). Understanding of digital identity technologies (e.g., MFA, federation, zero trust) and their relevance to practical policy implementation. Further Location Information Please ensure that you only apply for a location that you are willing and able to work from, as we will only make one offer of employment. Any additional notes included in a 'Further Location Preferences (optional)' field within the application form, will not be considered. Please be aware that you cannot change your location preference after submitting your application. Office Closures If your location preference is for one of the following sites, it's important to note that these are not long-term sites for HMRC and we will require you to move to a new building in the future, subject to our location strategy and the applicable employee policies at that time. For more information on where you might be working, review this information on our locations (opens in a new window) These sites are: Benton Park View, Newcastle - moving to Pilgrims Quarter, Newcastle Telford Plaza, Telford - moving to Parkside Court, Telford Trinity Bridge House, Salford - moving to an alternative office in Manchester/ Salford You will be given more information about what this means at the job offer stage. Leeds Location Moves Adjustment Payment will be available for this role, provided the successful applicant is a current HMRC colleague in Bradford and meets the eligibility requirements outlined in the HMRC's Moves Adjustment Payment guidance. Technical skills We'll assess you against these technical skills during the selection process: Knowledge of security policy and applying it within a delivery environment. Please see the associated framework linked in the interview section. Analysing data to develop guidance. Please see the associated framework linked in the interview section. Benefits Alongside your salary of £45,544, HM Revenue and Customs contributes £13,194 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). HMRC operates both Flexible and Hybrid Working policies, allowing you to balance your work and personal commitments. We welcome applications from those who need to work a more flexible arrangement and will agree to requests where possible, considering our operational and customer service needs. We offer a generous leave allowance, starting at 25 days and increasing by a day for every year of qualifying service up to a maximum of 30 days. Pension - We make contributions to our colleagues' Alpha pension equal to at least 28.97% of their salary. Family friendly policies. Personal support. Coaching and development. To find out more about HMRC benefits and find out what it's really like to work for HMRC hear from our insiders or visit Thinking of joining the Civil Service Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence . click apply for full job details
Head of Operational Risk Oversight - Finance
Jobtailor Edinburgh, Midlothian
Lead independent operational risk oversight across the Finance function, helping to ensure material risks are identified, understood and managed effectively. Act as the key Non-Financial Risk contact for the CFO and Finance Leadership Team, providing risk insight and guidance to support informed decision-making. Provide oversight of Finance's risk profile, including adherence to risk appetite and the management of current and emerging risks. Support a strong and effective control environment through oversight of Internal Controls over Financial Reporting (ICFR/SOX). Review the identification, escalation and remediation of control weaknesses, working closely with Finance, Internal Audit and external auditors. Provide oversight and risk input on major Finance transformation programmes, assessing governance, risk management and control arrangements. Collaborate with specialist risk teams across technology, cyber, change and financial risk to deliver an integrated view of risk. Contribute to the continued development of risk frameworks, reporting and tools through the Risk Transformation Programme. Deliver clear and meaningful risk reporting to senior leadership, Executive Committees and Board Risk Committees. Create an inclusive, collaborative environment that supports the development and success of team members. Requirements Significant experience in Operational Risk, Finance Risk, Controls Oversight, Audit, Assurance or Risk Management within financial services. Strong knowledge of ICFR/SOX controls, financial reporting, actuarial processes and treasury operations. Experience working within a Three Lines of Defence model, providing independent oversight and risk insight. The ability to build effective relationships and communicate with a broad range of stakeholders, including senior leaders and Board-level audiences. Excellent analytical, reporting and communication skills. Knowledge of relevant regulatory frameworks, including PRA, FCA, Solvency II and the UK Corporate Governance Code. Experience leading and developing teams, creating an environment where colleagues can perform at their best. A professional qualification such as ACA, ACCA, CIMA, CIA or equivalent. Core Competencies Demonstrates expertise in Operational Risk Management and Financial Controls Oversight, with a strong focus on ICFR/SOX compliance and risk reporting. Proven ability to lead teams and collaborate with stakeholders to enhance risk frameworks and governance. Highest-signal resume keywords Operational Risk Management ICFR/SOX Controls Risk Reporting Team Leadership Regulatory Knowledge ATS Optimization Keywords Hard Skills Operational Risk Controls Oversight Audit Assurance Risk Management Financial Reporting Actuarial Processes Treasury Operations Three Lines of Defence Model Risk Framework Development Soft Skills Analytical Skills Communication Skills Relationship Building Collaboration Team Development Certifications & Qualifications ACA ACCA CIMA CIA Industry Keywords PRA FCA Solvency II UK Corporate Governance Code
Aug 26, 2026
Full time
Lead independent operational risk oversight across the Finance function, helping to ensure material risks are identified, understood and managed effectively. Act as the key Non-Financial Risk contact for the CFO and Finance Leadership Team, providing risk insight and guidance to support informed decision-making. Provide oversight of Finance's risk profile, including adherence to risk appetite and the management of current and emerging risks. Support a strong and effective control environment through oversight of Internal Controls over Financial Reporting (ICFR/SOX). Review the identification, escalation and remediation of control weaknesses, working closely with Finance, Internal Audit and external auditors. Provide oversight and risk input on major Finance transformation programmes, assessing governance, risk management and control arrangements. Collaborate with specialist risk teams across technology, cyber, change and financial risk to deliver an integrated view of risk. Contribute to the continued development of risk frameworks, reporting and tools through the Risk Transformation Programme. Deliver clear and meaningful risk reporting to senior leadership, Executive Committees and Board Risk Committees. Create an inclusive, collaborative environment that supports the development and success of team members. Requirements Significant experience in Operational Risk, Finance Risk, Controls Oversight, Audit, Assurance or Risk Management within financial services. Strong knowledge of ICFR/SOX controls, financial reporting, actuarial processes and treasury operations. Experience working within a Three Lines of Defence model, providing independent oversight and risk insight. The ability to build effective relationships and communicate with a broad range of stakeholders, including senior leaders and Board-level audiences. Excellent analytical, reporting and communication skills. Knowledge of relevant regulatory frameworks, including PRA, FCA, Solvency II and the UK Corporate Governance Code. Experience leading and developing teams, creating an environment where colleagues can perform at their best. A professional qualification such as ACA, ACCA, CIMA, CIA or equivalent. Core Competencies Demonstrates expertise in Operational Risk Management and Financial Controls Oversight, with a strong focus on ICFR/SOX compliance and risk reporting. Proven ability to lead teams and collaborate with stakeholders to enhance risk frameworks and governance. Highest-signal resume keywords Operational Risk Management ICFR/SOX Controls Risk Reporting Team Leadership Regulatory Knowledge ATS Optimization Keywords Hard Skills Operational Risk Controls Oversight Audit Assurance Risk Management Financial Reporting Actuarial Processes Treasury Operations Three Lines of Defence Model Risk Framework Development Soft Skills Analytical Skills Communication Skills Relationship Building Collaboration Team Development Certifications & Qualifications ACA ACCA CIMA CIA Industry Keywords PRA FCA Solvency II UK Corporate Governance Code
Gleeson Recruitment Group
GRC Manager - Cyber Security
Gleeson Recruitment Group
We are looking for an experienced GRC Manager to join a growing Information Security function within a PE-backed international organisation undergoing significant growth and transformation. Reporting directly to the Director of Information Security, you'll take ownership of Governance, Risk and Compliance activities across the business, with an immediate focus on supporting the organisation through ISO 27001 certification. This is an opportunity to have genuine ownership. We're not looking for someone who has simply contributed to GRC within a large team; we need someone who understands how to take frameworks, controls and best practice and implement them effectively within a lean, fast-moving organisation. The Role You'll take ownership across: Driving the organisation's ISO 27001 certification journey and ongoing ISMS maturity. Developing and maintaining security policies, standards and governance frameworks. Managing information security risks, risk registers, treatment plans and remediation. Coordinating audit evidence, control assessments and audit readiness. Supporting compliance with NIS2, NCSC CAF, GDPR and Cyber Essentials. Managing third-party security assessments, supplier assurance and customer security questionnaires. Producing meaningful security KPIs, KRIs and executive reporting. Working across IT, OT, Legal, Procurement, Operations and Commercial teams to drive security improvements. Supporting security awareness, business continuity and post-incident improvement activities. Continuously improving and automating GRC processes as the organisation grows. Experience The key requirement is someone who has personally helped take an organisation through ISO 27001 certification and understands what successful implementation looks like in practice. You'll ideally bring: Strong practical experience across information security Governance, Risk & Compliance. Experience developing or significantly maturing a GRC function or ISMS. End-to-end ownership of ISO 27001 controls, evidence, audits and remediation. Experience managing security risks and driving actions through to completion. Exposure to third-party/supplier assurance and customer security requirements. Knowledge of NIS2 would be particularly valuable. Excellent stakeholder management and communication skills. You'll need the confidence to challenge and influence people across the organisation, translating complex security risks into clear business language for audiences ranging from technical teams through to senior executives. We're open on industry background. More important is your ability to operate autonomously, adapt best practice to a lean environment and take genuine ownership rather than being one part of a large GRC function. Why Join? The organisation is undergoing significant growth, including acquisitions across Europe, making Information Security an important part of its wider transformation and value-creation strategy. You'll work directly with the Director of Information Security, have access to specialist external partners and wider group security expertise and can shape how GRC develops as the organisation continues to scale. There will also be occasional travel to other UK and European locations. At Gleeson Recruitment Group, we embrace inclusivity and welcome applicants of all backgrounds, experiences, and abilities. We are proud to be a disability confident employer. By applying you will be registered as a candidate with Gleeson Recruitment Limited. Our Privacy Policy is available on our website and explains how we will use your data.
Aug 26, 2026
Full time
We are looking for an experienced GRC Manager to join a growing Information Security function within a PE-backed international organisation undergoing significant growth and transformation. Reporting directly to the Director of Information Security, you'll take ownership of Governance, Risk and Compliance activities across the business, with an immediate focus on supporting the organisation through ISO 27001 certification. This is an opportunity to have genuine ownership. We're not looking for someone who has simply contributed to GRC within a large team; we need someone who understands how to take frameworks, controls and best practice and implement them effectively within a lean, fast-moving organisation. The Role You'll take ownership across: Driving the organisation's ISO 27001 certification journey and ongoing ISMS maturity. Developing and maintaining security policies, standards and governance frameworks. Managing information security risks, risk registers, treatment plans and remediation. Coordinating audit evidence, control assessments and audit readiness. Supporting compliance with NIS2, NCSC CAF, GDPR and Cyber Essentials. Managing third-party security assessments, supplier assurance and customer security questionnaires. Producing meaningful security KPIs, KRIs and executive reporting. Working across IT, OT, Legal, Procurement, Operations and Commercial teams to drive security improvements. Supporting security awareness, business continuity and post-incident improvement activities. Continuously improving and automating GRC processes as the organisation grows. Experience The key requirement is someone who has personally helped take an organisation through ISO 27001 certification and understands what successful implementation looks like in practice. You'll ideally bring: Strong practical experience across information security Governance, Risk & Compliance. Experience developing or significantly maturing a GRC function or ISMS. End-to-end ownership of ISO 27001 controls, evidence, audits and remediation. Experience managing security risks and driving actions through to completion. Exposure to third-party/supplier assurance and customer security requirements. Knowledge of NIS2 would be particularly valuable. Excellent stakeholder management and communication skills. You'll need the confidence to challenge and influence people across the organisation, translating complex security risks into clear business language for audiences ranging from technical teams through to senior executives. We're open on industry background. More important is your ability to operate autonomously, adapt best practice to a lean environment and take genuine ownership rather than being one part of a large GRC function. Why Join? The organisation is undergoing significant growth, including acquisitions across Europe, making Information Security an important part of its wider transformation and value-creation strategy. You'll work directly with the Director of Information Security, have access to specialist external partners and wider group security expertise and can shape how GRC develops as the organisation continues to scale. There will also be occasional travel to other UK and European locations. At Gleeson Recruitment Group, we embrace inclusivity and welcome applicants of all backgrounds, experiences, and abilities. We are proud to be a disability confident employer. By applying you will be registered as a candidate with Gleeson Recruitment Limited. Our Privacy Policy is available on our website and explains how we will use your data.
HMRC
Deputy Director, Head of AI Assurance
HMRC Manchester, Lancashire
About the job Job summary The Deputy Director, Head of AI Assurance will lead HMRC's approach to assuring the responsible, safe and effective deployment of AI across the organisation. The role will provide strategic leadership for the AI assurance function within the Chief AI Office (CAIO), ensuring that AI activity across HMRC is aligned to organisational priorities, meets clear governance and assurance expectations, and can progress at pace within appropriate guardrails. The post holder will not replace existing specialist functions such as data protection, cyber security, legal, commercial, architecture, risk or ethics. Instead, they will act as the senior alignment point for AI assurance, bringing together the right expertise at the right point in the lifecycle and ensuring that teams receive clear, proportionate and practical assurance advice. Job description Lead the development and operation of HMRC's AI assurance approach, ensuring that central, local and federated AI activity meets a consistent assurance bar. Establish clear assurance routes for AI use cases, from early idea through experimentation, deployment, scaling and live service. Provide senior oversight of AI assurance decisions, ensuring that risks, mitigations, dependencies and decisions are recorded, evidenced and traceable. Contribute to development of AI Agents to support delivery of effective assurance across the enterprise. Work with senior colleagues across HMRC to embed proportionate assurance into existing governance, delivery, security, data, commercial and change processes. Lead the AI assurance team, setting priorities, allocating work and ensuring a coherent service to delivery teams and business areas. Ensure assurance activity supports responsible acceleration rather than unnecessary delay, helping teams understand what is required to progress safely. Maintain a single view of material AI assurance issues, risks, themes and decisions, escalating where appropriate to the Chief AI Officer and relevant governance forums. Oversee the development of reusable assurance products, including checklists, evidence packs, decision templates, guidance and playbooks. Build strong working relationships with existing HMRC specialists in security, data protection, data governance, legal, ethics, commercial, architecture, risk and internal audit. Support external confidence in HMRC's use of AI by ensuring transparency, audit readiness and clear evidence of responsible redeployment. Represent HMRC in cross-government AI assurance, governance and professional communities, helping shape emerging standards, frameworks and best practice for responsible AI adoption. Person specification Experience of leading governance, assurance, risk, compliance or delivery functions in a complex organisation, with accountability for delivering effective outcomes in high-profile or sensitive environments. Experience of AI, data science, digital transformation, automation or emerging technology governance, including applying proportionate assurance approaches to innovative and fast-moving technology delivery. Strong ability to interpret complex policy, technical, ethical and risk issues, and translate them into clear, practical guidance that supports safe and effective delivery. Demonstrable ability to build effective relationships across organisational boundaries, influence senior stakeholders, and align diverse interests to achieve pragmatic decisions and outcomes. Excellent judgement and decision-making skills, including the ability to balance pace, innovation, risk, proportionality, regulatory requirements and public trust. Proven leadership and communication skills, including the ability to build and lead high-performing expert teams and to communicate complex issues clearly and succinctly to senior leaders and non-technical audiences. Benefits Alongside your salary of £86,000, HM Revenue and Customs contributes £24,914 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). Learning and development tailored to your role An environment with flexible working options A culture encouraging inclusion and diversity A Civil Service pension with an employer contribution of 28.97% Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use. Selection process details For full selection process details please see attached Candidate Pack Feedback will only be provided if you attend an interview or assessment. This role has a minimum assignment duration of 3 years. An assignment duration is the period of time a Senior Civil Servant is expected to remain in the same post to enable them to deliver on the agreed key business outcomes. The assignment duration also supports your career through building your depth of expertise. As part of accepting this role you will be agreeing to the expected assignment duration set out above. This will not result in a contractual change to your terms and conditions. Please note this is an expectation only, it is not something which is written into your terms and conditions or indeed which the employing organisation or you are bound by. It will depend on your personal circumstances at a particular time and business needs, for example, would not preclude any absence like family friendly leave. It is nonetheless an important expectation, which is why we ask you to confirm you agree to the assignment duration set out above. Security Successful candidates must undergo a standard (or equivalent) criminal record check. Successful candidates must meet the security requirements before they can be appointed. The level of security needed is counter-terrorist check (opens in a new window). See our vetting charter (opens in a new window). People working with government assets must complete baseline personnel security standard (opens in new window) checks. Nationality requirements This job is broadly open to the following groups: UK nationals nationals of the Republic of Ireland nationals of Commonwealth countries who have the right to work in the UK nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window) nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS) individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020 Turkish nationals, and certain family members of Turkish nationals, who have accrued the right to work in the Civil Service Further information on nationality requirements (opens in a new window) Working for the Civil Service The Civil Service Code (opens in a new window) sets out the standards of behaviour expected of civil servants. We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window). The Civil Service embraces diversity and promotes equal opportunities. As such, we run a Disability Confident Scheme (DCS) for candidates with disabilities who meet the minimum selection criteria. The Civil Service also offers a Redeployment Interview Scheme to civil servants who are at risk of redundancy, and who meet the minimum requirements for the advertised vacancy. Diversity and Inclusion The Civil Service is committed to attract, retain and invest in talent wherever it is found. To learn more please see theCivil Service People Plan (opens in a new window) and the Civil Service Diversity and Inclusion Strategy (opens in a new window). Apply and further information This vacancy is part of the Great Place to Work for Veterans (opens in a new window) initiative. Once this job has closed, the job advert will no longer be available. You may want to save a copy for your records. Contact point for applicants Job contact : Name : Daniel White Email : Recruitment team Email : Further information Appointment to the Civil Service is governed by the Civil Service Commission's Recruitment Principles. You have the right to complain if you feel a department has breached the requirement of the Recruitment Principles. In the first instance, you should raise the matter directly with the department concerned. If you are not satisfied with the response, you may bring your complaint to the Commission . click apply for full job details
Aug 26, 2026
Full time
About the job Job summary The Deputy Director, Head of AI Assurance will lead HMRC's approach to assuring the responsible, safe and effective deployment of AI across the organisation. The role will provide strategic leadership for the AI assurance function within the Chief AI Office (CAIO), ensuring that AI activity across HMRC is aligned to organisational priorities, meets clear governance and assurance expectations, and can progress at pace within appropriate guardrails. The post holder will not replace existing specialist functions such as data protection, cyber security, legal, commercial, architecture, risk or ethics. Instead, they will act as the senior alignment point for AI assurance, bringing together the right expertise at the right point in the lifecycle and ensuring that teams receive clear, proportionate and practical assurance advice. Job description Lead the development and operation of HMRC's AI assurance approach, ensuring that central, local and federated AI activity meets a consistent assurance bar. Establish clear assurance routes for AI use cases, from early idea through experimentation, deployment, scaling and live service. Provide senior oversight of AI assurance decisions, ensuring that risks, mitigations, dependencies and decisions are recorded, evidenced and traceable. Contribute to development of AI Agents to support delivery of effective assurance across the enterprise. Work with senior colleagues across HMRC to embed proportionate assurance into existing governance, delivery, security, data, commercial and change processes. Lead the AI assurance team, setting priorities, allocating work and ensuring a coherent service to delivery teams and business areas. Ensure assurance activity supports responsible acceleration rather than unnecessary delay, helping teams understand what is required to progress safely. Maintain a single view of material AI assurance issues, risks, themes and decisions, escalating where appropriate to the Chief AI Officer and relevant governance forums. Oversee the development of reusable assurance products, including checklists, evidence packs, decision templates, guidance and playbooks. Build strong working relationships with existing HMRC specialists in security, data protection, data governance, legal, ethics, commercial, architecture, risk and internal audit. Support external confidence in HMRC's use of AI by ensuring transparency, audit readiness and clear evidence of responsible redeployment. Represent HMRC in cross-government AI assurance, governance and professional communities, helping shape emerging standards, frameworks and best practice for responsible AI adoption. Person specification Experience of leading governance, assurance, risk, compliance or delivery functions in a complex organisation, with accountability for delivering effective outcomes in high-profile or sensitive environments. Experience of AI, data science, digital transformation, automation or emerging technology governance, including applying proportionate assurance approaches to innovative and fast-moving technology delivery. Strong ability to interpret complex policy, technical, ethical and risk issues, and translate them into clear, practical guidance that supports safe and effective delivery. Demonstrable ability to build effective relationships across organisational boundaries, influence senior stakeholders, and align diverse interests to achieve pragmatic decisions and outcomes. Excellent judgement and decision-making skills, including the ability to balance pace, innovation, risk, proportionality, regulatory requirements and public trust. Proven leadership and communication skills, including the ability to build and lead high-performing expert teams and to communicate complex issues clearly and succinctly to senior leaders and non-technical audiences. Benefits Alongside your salary of £86,000, HM Revenue and Customs contributes £24,914 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window). Learning and development tailored to your role An environment with flexible working options A culture encouraging inclusion and diversity A Civil Service pension with an employer contribution of 28.97% Things you need to know Artificial intelligence Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use. Selection process details For full selection process details please see attached Candidate Pack Feedback will only be provided if you attend an interview or assessment. This role has a minimum assignment duration of 3 years. An assignment duration is the period of time a Senior Civil Servant is expected to remain in the same post to enable them to deliver on the agreed key business outcomes. The assignment duration also supports your career through building your depth of expertise. As part of accepting this role you will be agreeing to the expected assignment duration set out above. This will not result in a contractual change to your terms and conditions. Please note this is an expectation only, it is not something which is written into your terms and conditions or indeed which the employing organisation or you are bound by. It will depend on your personal circumstances at a particular time and business needs, for example, would not preclude any absence like family friendly leave. It is nonetheless an important expectation, which is why we ask you to confirm you agree to the assignment duration set out above. Security Successful candidates must undergo a standard (or equivalent) criminal record check. Successful candidates must meet the security requirements before they can be appointed. The level of security needed is counter-terrorist check (opens in a new window). See our vetting charter (opens in a new window). People working with government assets must complete baseline personnel security standard (opens in new window) checks. Nationality requirements This job is broadly open to the following groups: UK nationals nationals of the Republic of Ireland nationals of Commonwealth countries who have the right to work in the UK nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window) nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS) individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020 Turkish nationals, and certain family members of Turkish nationals, who have accrued the right to work in the Civil Service Further information on nationality requirements (opens in a new window) Working for the Civil Service The Civil Service Code (opens in a new window) sets out the standards of behaviour expected of civil servants. We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window). The Civil Service embraces diversity and promotes equal opportunities. As such, we run a Disability Confident Scheme (DCS) for candidates with disabilities who meet the minimum selection criteria. The Civil Service also offers a Redeployment Interview Scheme to civil servants who are at risk of redundancy, and who meet the minimum requirements for the advertised vacancy. Diversity and Inclusion The Civil Service is committed to attract, retain and invest in talent wherever it is found. To learn more please see theCivil Service People Plan (opens in a new window) and the Civil Service Diversity and Inclusion Strategy (opens in a new window). Apply and further information This vacancy is part of the Great Place to Work for Veterans (opens in a new window) initiative. Once this job has closed, the job advert will no longer be available. You may want to save a copy for your records. Contact point for applicants Job contact : Name : Daniel White Email : Recruitment team Email : Further information Appointment to the Civil Service is governed by the Civil Service Commission's Recruitment Principles. You have the right to complain if you feel a department has breached the requirement of the Recruitment Principles. In the first instance, you should raise the matter directly with the department concerned. If you are not satisfied with the response, you may bring your complaint to the Commission . click apply for full job details
Cyber Security Technical Consultant
Different Technologies Pty Ltd.
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
Aug 26, 2026
Full time
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
UK Biobank
Director of Information Security
UK Biobank Cheadle, Staffordshire
Salary is competitive and commensurate with experience, plus a 14.5% pension contribution and a relocation package where applicable. Shape the future of information security for one of the world's most important organisations supporting biomedical research. At UK Biobank, information security isn't simply about protecting systems, it's about safeguarding one of the world's most valuable health research resources. Our data is trusted by more than 22,000 approved researchers across over 60 countries, helping advance our understanding of cancer, dementia, cardiovascular disease, mental health and hundreds of other conditions. Protecting that trust while enabling scientific discovery is fundamental to everything we do. We're entering one of the most significant periods of technology transformation in our history. As we continue to invest in modern cloud platforms, AI-enabled services, new digital capabilities and our £127.6 million headquarters at Manchester Science Park, we're looking for a Director of Information Security to lead the next phase of our information security maturity. This isn't a role focused on maintaining an established security function. It's an opportunity to shape and define a world-class capability Can you do it? As Director of Information Security, you'll report directly to our Chief Technology Officer and provide strategic leadership for information security across UK Biobank. You'll be responsible for ensuring our governance, cyber security, identity management, business continuity, and risk management capabilities continue to evolve alongside an increasingly complex threat landscape. Working closely with colleagues across Data and Technology, Legal, and the wider organisation, you'll embed security into organisational decision-making, providing confidence that our platforms remain secure, resilient, and compliant while continuing to support innovation and world-leading research. This is a unique opportunity to build on the strong foundations already in place while leading the next phase of UK Biobank's security maturity. As we continue our wider technology transformation, you'll shape the organisation's security strategy, strengthen operational capability, and help embed security into every aspect of our cloud platforms, digital services, AI initiatives, and future technologies. You'll lead a growing Information Security function, with the opportunity to develop capability, evolve the team, and foster a positive security culture across the organisation. Working at both strategic and operational levels, you'll influence Executive Leadership and Board discussions while providing the leadership needed to respond to emerging threats, manage organisational risk, and ensure security enables innovation rather than becoming a barrier to it. This is a unique and rare opportunity to shape the future of information security within one of the world's leading biomedical research organisations, protecting data that supports thousands of researchers across the globe while helping deliver the next generation of scientific discovery. You will be responsible for Developing, implementing, and creating a comprehensive information security strategy, providing direction and support to ensure effective implementation of security controls. Conducting regular risk assessments, audits, tests, and modelling to identify and evaluate vulnerabilities and potential threats. Providing regular updates to the executive leadership team and represent information security at board, audit, and governance committees Establishing metrics and enforcing information security policies, procedures, and guidelines aligned with standards and frameworks, particularly ISO27001 and the NCSC Cyber Assessment Framework, as well as regulatory requirements and industry best practices. Ensuring that critical data and assets have been identified, classified, and subject to appropriate controls, including for handling, ownership, and destruction. Leading the organisation's response to major cyber incidents, including providing out-of-hours and crisis-level support when required. Promoting and communicating a culture of security awareness so all staff understand their role in maintaining information security. Managing the Information Security budget, setting investment priorities, and contributing to financial planning. Is this 'you'? To be successful, you will have: Significant experience in information security management, with a proven track record of leadership in the field. Relevant industry certifications, preferably CISSP, CISM, or CCISO. Strong knowledge of information security standards, frameworks, and best practices. Previous experience of ISO270001 is a key requirement. A clear understanding of the laws and regulations associated with controlling and processing personal data, directing organisation responses to cyber incidents. Strong knowledge and understanding of the cyber threat landscape. Experience securing cloud environments with a knowledge of the vulnerability detection tools and security services available in AWS and /or MS Azure. Experience of deploying controls across networking, end-user compute, identity and access management, software development, and business operations to minimise the likelihood of security incidents. Experience of recruiting specialist staff, building teams, and developing existing colleagues through training, coaching and mentoring. Working hours are 35 hours per week, Monday to Friday, with 3 days onsite and hybrid working available. The role will be based at Greenheys, Manchester Science Park's headquarters. Our passion for diversity and equality means creating a work environment for all employees that is welcoming, respectful, engaging, and enriched with opportunities for personal and professional development. We actively welcome applications from people with disabilities, long-term health conditions, neurodivergent candidates, and those with diverse thinking styles. We are committed to making reasonable adjustments throughout our recruitment process and in the workplace so that everyone can perform at their best. If you require any adjustments during the recruitment process, please contact Tommy Wilson at so we can support you. Your Wellbeing Matters to Us Colleagues at UK Biobank often highlight feeling supported, included, and connected to meaningful work, with wellbeing and work-life balance genuinely valued across teams. We're proud to offer a benefits package that supports your health, financial security, and development from day one: Currently 14.5% employer contribution to the USS Pension Scheme Healthcare Cash Plan to help cover everyday healthcare costs ️ 30 days' annual leave, plus bank holidays Buy up to 5 additional days' annual leave through our Holiday Buy Scheme A paid day off for your birthday Enhanced maternity, paternity, adoption and shared parental pay Hybrid and flexible working for many office-based roles Up to 6 months' full sick pay ️ Free on-site gym Subsidised lunch when working on site ️ Life Assurance Cycle to Work Scheme Season Ticket Loan Training and development opportunities, including a £500 annual personal development allowance Paid professional subscriptions, where applicable ️ Employee Discounts Portal Wellbeing support, including an Employee Assistance Programme Free annual flu vaccination and Hepatitis B vaccination, where applicable An active social committee with regular social events Free on-site parking Payroll Giving (Give As You Earn) The job advert closing date may change, so early applications are encouraged. About UK Biobank UK Biobank is a large-scale biomedical database and research resource containing in-depth genetic and health information from half a million UK participants. The database, the largest and most comprehensive of its kind in the world, is anonymised and made widely accessible by UK Biobank to global researchers who use it to find new scientific discoveries about common and life-threatening diseases - such as cancer, heart disease and stroke which strike in mid-later life. UK Biobank is an innovative organisation with over 350 staff across four sites in the UK that fosters an engaging environment and supports the development of our staff. Our dedicated teams work alongside the world's leading biomedical scientists in our joint mission to improve public health.
Aug 25, 2026
Full time
Salary is competitive and commensurate with experience, plus a 14.5% pension contribution and a relocation package where applicable. Shape the future of information security for one of the world's most important organisations supporting biomedical research. At UK Biobank, information security isn't simply about protecting systems, it's about safeguarding one of the world's most valuable health research resources. Our data is trusted by more than 22,000 approved researchers across over 60 countries, helping advance our understanding of cancer, dementia, cardiovascular disease, mental health and hundreds of other conditions. Protecting that trust while enabling scientific discovery is fundamental to everything we do. We're entering one of the most significant periods of technology transformation in our history. As we continue to invest in modern cloud platforms, AI-enabled services, new digital capabilities and our £127.6 million headquarters at Manchester Science Park, we're looking for a Director of Information Security to lead the next phase of our information security maturity. This isn't a role focused on maintaining an established security function. It's an opportunity to shape and define a world-class capability Can you do it? As Director of Information Security, you'll report directly to our Chief Technology Officer and provide strategic leadership for information security across UK Biobank. You'll be responsible for ensuring our governance, cyber security, identity management, business continuity, and risk management capabilities continue to evolve alongside an increasingly complex threat landscape. Working closely with colleagues across Data and Technology, Legal, and the wider organisation, you'll embed security into organisational decision-making, providing confidence that our platforms remain secure, resilient, and compliant while continuing to support innovation and world-leading research. This is a unique opportunity to build on the strong foundations already in place while leading the next phase of UK Biobank's security maturity. As we continue our wider technology transformation, you'll shape the organisation's security strategy, strengthen operational capability, and help embed security into every aspect of our cloud platforms, digital services, AI initiatives, and future technologies. You'll lead a growing Information Security function, with the opportunity to develop capability, evolve the team, and foster a positive security culture across the organisation. Working at both strategic and operational levels, you'll influence Executive Leadership and Board discussions while providing the leadership needed to respond to emerging threats, manage organisational risk, and ensure security enables innovation rather than becoming a barrier to it. This is a unique and rare opportunity to shape the future of information security within one of the world's leading biomedical research organisations, protecting data that supports thousands of researchers across the globe while helping deliver the next generation of scientific discovery. You will be responsible for Developing, implementing, and creating a comprehensive information security strategy, providing direction and support to ensure effective implementation of security controls. Conducting regular risk assessments, audits, tests, and modelling to identify and evaluate vulnerabilities and potential threats. Providing regular updates to the executive leadership team and represent information security at board, audit, and governance committees Establishing metrics and enforcing information security policies, procedures, and guidelines aligned with standards and frameworks, particularly ISO27001 and the NCSC Cyber Assessment Framework, as well as regulatory requirements and industry best practices. Ensuring that critical data and assets have been identified, classified, and subject to appropriate controls, including for handling, ownership, and destruction. Leading the organisation's response to major cyber incidents, including providing out-of-hours and crisis-level support when required. Promoting and communicating a culture of security awareness so all staff understand their role in maintaining information security. Managing the Information Security budget, setting investment priorities, and contributing to financial planning. Is this 'you'? To be successful, you will have: Significant experience in information security management, with a proven track record of leadership in the field. Relevant industry certifications, preferably CISSP, CISM, or CCISO. Strong knowledge of information security standards, frameworks, and best practices. Previous experience of ISO270001 is a key requirement. A clear understanding of the laws and regulations associated with controlling and processing personal data, directing organisation responses to cyber incidents. Strong knowledge and understanding of the cyber threat landscape. Experience securing cloud environments with a knowledge of the vulnerability detection tools and security services available in AWS and /or MS Azure. Experience of deploying controls across networking, end-user compute, identity and access management, software development, and business operations to minimise the likelihood of security incidents. Experience of recruiting specialist staff, building teams, and developing existing colleagues through training, coaching and mentoring. Working hours are 35 hours per week, Monday to Friday, with 3 days onsite and hybrid working available. The role will be based at Greenheys, Manchester Science Park's headquarters. Our passion for diversity and equality means creating a work environment for all employees that is welcoming, respectful, engaging, and enriched with opportunities for personal and professional development. We actively welcome applications from people with disabilities, long-term health conditions, neurodivergent candidates, and those with diverse thinking styles. We are committed to making reasonable adjustments throughout our recruitment process and in the workplace so that everyone can perform at their best. If you require any adjustments during the recruitment process, please contact Tommy Wilson at so we can support you. Your Wellbeing Matters to Us Colleagues at UK Biobank often highlight feeling supported, included, and connected to meaningful work, with wellbeing and work-life balance genuinely valued across teams. We're proud to offer a benefits package that supports your health, financial security, and development from day one: Currently 14.5% employer contribution to the USS Pension Scheme Healthcare Cash Plan to help cover everyday healthcare costs ️ 30 days' annual leave, plus bank holidays Buy up to 5 additional days' annual leave through our Holiday Buy Scheme A paid day off for your birthday Enhanced maternity, paternity, adoption and shared parental pay Hybrid and flexible working for many office-based roles Up to 6 months' full sick pay ️ Free on-site gym Subsidised lunch when working on site ️ Life Assurance Cycle to Work Scheme Season Ticket Loan Training and development opportunities, including a £500 annual personal development allowance Paid professional subscriptions, where applicable ️ Employee Discounts Portal Wellbeing support, including an Employee Assistance Programme Free annual flu vaccination and Hepatitis B vaccination, where applicable An active social committee with regular social events Free on-site parking Payroll Giving (Give As You Earn) The job advert closing date may change, so early applications are encouraged. About UK Biobank UK Biobank is a large-scale biomedical database and research resource containing in-depth genetic and health information from half a million UK participants. The database, the largest and most comprehensive of its kind in the world, is anonymised and made widely accessible by UK Biobank to global researchers who use it to find new scientific discoveries about common and life-threatening diseases - such as cancer, heart disease and stroke which strike in mid-later life. UK Biobank is an innovative organisation with over 350 staff across four sites in the UK that fosters an engaging environment and supports the development of our staff. Our dedicated teams work alongside the world's leading biomedical scientists in our joint mission to improve public health.
VP/AVP Governance, Risk and Compliance
Aon Corporation Hamilton, Lanarkshire
AON INSURANCE MANAGERS (BERMUDA) LTD. requires a VP/AVP - GOVERNANCE, RISK & COMPLIANCE Be a part of a dynamic team! Aon Insurance Managers (Bermuda) Ltd (AIMB) is seeking to employ a Vice President or an Assistant Vice President within our Governance, Risk and Compliance Advisory practice to join a diverse team of professionals dedicated to providing the best service to our Commercial re/insurance, Insurance Linked Securities (ILS), Captive and Aon's Segregated Account Facility (White Rock) clients. Why should you join Aon's Bermuda Team? We are proud to be an equal opportunity workplace including reasonable accommodation. At Aon, we shape decisions for the better to protect and enrich the lives of people around the world. As an organization, we are passionate about helping our colleagues and clients succeed at all levels, by supporting one another and appreciating everyone's strengths and perspectives. This spirit of inclusiveness sits at our core. AIMB is a top-tier professional services firm in Bermuda, providing our clients with management and consulting services customised to meet the uniqueness of their individual needs. The successful candidate will be a highly motivated and energetic individual who has a successful track record of delivery of governance, risk and compliance solutions. This is a senior role and the person is expected to be an organized, self-led and highly motivated risk, compliance, insurance or accounting professional with a consulting track record, possessing the ability to discuss confidently governance, risk and compliance strategies and be able to lead specific projects to develop revenue growth and operational efficiencies. This person will also play a key role in expanding Aon's risk consulting offering, driving revenue growth through high-quality advisory services, and acting as a trusted advisor to boards and senior management across our client base. Aon is in the business of better decisions At Aon, we shape decisions for the better to protect and enrich the lives of people around the world. As an organization, we are united through trust as one inclusive team and we are passionate about helping our colleagues and clients succeed. What the day will look like Work closely with colleagues across our business to bring the best of Aon to clients; Implement day-to-day governance, risk and compliance deliverables for a portfolio of Commercial (re)insurance, ILS, Captive and White Rock clients; Support clients in understanding and implementing the various Bermuda regulatory requirements relating to governance, risk and compliance such as the Bermuda Insurance Code of Conduct, the Operational Resilience and Outsourcing Code, Cyber Risk Management Code of Conduct, Climate change risk management among others; Support clients in the development, implementation and maintenance of a governance, risk & compliance Framework, including supporting compliance assurance work; Support start-up clients by reviewing and advising on their proposed governance, risk & compliance framework and appropriate governance, risk & compliance policies as part of the business plan submission; Support proposal development, presentations and pitches, contributing subject-matter expertise on risk, compliance and governance; Provide practical advice on regulatory developments, risk management practices and governance expectations to clients and internal partners; Manage communication and support the engagement between clients and the Bermuda Monetary Authority (BMA) with regards to governance, risk and compliance matters; Support colleagues in completing annual client filings to the regulator including the corporate governance, risk and compliance sections of the BSCR, CISSA and FCR; Be a Relationship Leader on select clients; Attendance at and participation in client Board and/or committee meetings, providing clear, concise governance, risk and compliance guidance and/or reporting; Proactively raise the profile of ACIM Bermuda by representation at local risk conferences and other related events. This will include speaking engagements from time to time and ongoing relationship-building with key local and global industry partners; Assist in various ad-hoc governance, risk & compliance initiatives as required to improve the efficiency and productivity of the business; Act as named Compliance Officer and/or provide risk function support for selected client entities, as required; Develop and lead Aon's governance, risk and compliance consulting offering for clients in Bermuda, including service design, pricing and go-to-market support; Find opportunities to expand advisory services with existing and prospective clients, working closely with Aon business leaders and client teams; Support proposal development, presentations and pitches, contributing subject-matter expertise on risk, compliance and governance; Contribute to thought leadership, including client briefings, insights on regulatory change, and internal training; Provide coaching, guidance and technical leadership to colleagues involved in risk and compliance-related work; Help shape and embed best practices, tools and methodologies across the practice. How this opportunity is different Aon's Captive & Insurance Management practice in Bermuda specializes in enhancing (re)insurance companies by maximizing their value, ensuring their stability, providing regulatory oversight, and effectively managing the day-to-day operations of their business. Our portfolio represents a wide range of clients from small/medium sized operations to large Fortune 500 companies across a broad variety of industries. We attribute our continued success to our understanding of our clients' governance, risk management and compliance issues; our embracement of the latest technology and most of all, our focus on quality client service and maintaining healthy long-term relationships. Skills and experience that will lead to success: An internationally recognized relevant qualification (accounting, insurance, ERM, compliance or actuarial); Deep understanding of the Bermuda (or similar) regulatory environment and a minimum of 5 years' experience; Experience in designing, implementing and monitoring/reporting of governance, risk and compliance frameworks for re/insurance companies; Exceptional stakeholder management skills, with the confidence and presence to interact with C-suite executives, board members and regulators; Strong interpersonal and collaboration skills in relationship building for business development and retention in the international arena; Strong analytical, problem-solving and critical thinking skills, with the ability to translate complex regulatory and risk concepts into clear, practical recommendations; A strong track record of excellent client service including a commitment to providing timely results, even when a fast turnaround is required; Prior consulting or advisory experience (e.g., with a professional service, Big 4, or specialist advisory firm) is strongly preferred and will be a distinct advantage; Excellent project management skills, highly self-directed and organized, with the ability to manage multiple clients and deliverables in a dynamic, deadline-driven environment; Excellent written, communication, and presentation skills, and the ability to effectively interact with internal and client senior management; Demonstrated commercial mindset, with an interest in leading and growing a practice and contributing to revenue generation. Skills: Risk Management Systems, Project Proposals, Financial Statements, Client Relationship Management, Customer Relationship Management (CRM), Captive Insurance, Account Management Disclaimer: As per Immigration Law, first preference will be given to suitable Bermudians, Spouses of Bermudians, or PRC holders. Applications must include a detailed resume with references. Closing Date: Saturday, August 29, 2026 P.O. Box HM 2450, Hamilton HMJX
Aug 25, 2026
Full time
AON INSURANCE MANAGERS (BERMUDA) LTD. requires a VP/AVP - GOVERNANCE, RISK & COMPLIANCE Be a part of a dynamic team! Aon Insurance Managers (Bermuda) Ltd (AIMB) is seeking to employ a Vice President or an Assistant Vice President within our Governance, Risk and Compliance Advisory practice to join a diverse team of professionals dedicated to providing the best service to our Commercial re/insurance, Insurance Linked Securities (ILS), Captive and Aon's Segregated Account Facility (White Rock) clients. Why should you join Aon's Bermuda Team? We are proud to be an equal opportunity workplace including reasonable accommodation. At Aon, we shape decisions for the better to protect and enrich the lives of people around the world. As an organization, we are passionate about helping our colleagues and clients succeed at all levels, by supporting one another and appreciating everyone's strengths and perspectives. This spirit of inclusiveness sits at our core. AIMB is a top-tier professional services firm in Bermuda, providing our clients with management and consulting services customised to meet the uniqueness of their individual needs. The successful candidate will be a highly motivated and energetic individual who has a successful track record of delivery of governance, risk and compliance solutions. This is a senior role and the person is expected to be an organized, self-led and highly motivated risk, compliance, insurance or accounting professional with a consulting track record, possessing the ability to discuss confidently governance, risk and compliance strategies and be able to lead specific projects to develop revenue growth and operational efficiencies. This person will also play a key role in expanding Aon's risk consulting offering, driving revenue growth through high-quality advisory services, and acting as a trusted advisor to boards and senior management across our client base. Aon is in the business of better decisions At Aon, we shape decisions for the better to protect and enrich the lives of people around the world. As an organization, we are united through trust as one inclusive team and we are passionate about helping our colleagues and clients succeed. What the day will look like Work closely with colleagues across our business to bring the best of Aon to clients; Implement day-to-day governance, risk and compliance deliverables for a portfolio of Commercial (re)insurance, ILS, Captive and White Rock clients; Support clients in understanding and implementing the various Bermuda regulatory requirements relating to governance, risk and compliance such as the Bermuda Insurance Code of Conduct, the Operational Resilience and Outsourcing Code, Cyber Risk Management Code of Conduct, Climate change risk management among others; Support clients in the development, implementation and maintenance of a governance, risk & compliance Framework, including supporting compliance assurance work; Support start-up clients by reviewing and advising on their proposed governance, risk & compliance framework and appropriate governance, risk & compliance policies as part of the business plan submission; Support proposal development, presentations and pitches, contributing subject-matter expertise on risk, compliance and governance; Provide practical advice on regulatory developments, risk management practices and governance expectations to clients and internal partners; Manage communication and support the engagement between clients and the Bermuda Monetary Authority (BMA) with regards to governance, risk and compliance matters; Support colleagues in completing annual client filings to the regulator including the corporate governance, risk and compliance sections of the BSCR, CISSA and FCR; Be a Relationship Leader on select clients; Attendance at and participation in client Board and/or committee meetings, providing clear, concise governance, risk and compliance guidance and/or reporting; Proactively raise the profile of ACIM Bermuda by representation at local risk conferences and other related events. This will include speaking engagements from time to time and ongoing relationship-building with key local and global industry partners; Assist in various ad-hoc governance, risk & compliance initiatives as required to improve the efficiency and productivity of the business; Act as named Compliance Officer and/or provide risk function support for selected client entities, as required; Develop and lead Aon's governance, risk and compliance consulting offering for clients in Bermuda, including service design, pricing and go-to-market support; Find opportunities to expand advisory services with existing and prospective clients, working closely with Aon business leaders and client teams; Support proposal development, presentations and pitches, contributing subject-matter expertise on risk, compliance and governance; Contribute to thought leadership, including client briefings, insights on regulatory change, and internal training; Provide coaching, guidance and technical leadership to colleagues involved in risk and compliance-related work; Help shape and embed best practices, tools and methodologies across the practice. How this opportunity is different Aon's Captive & Insurance Management practice in Bermuda specializes in enhancing (re)insurance companies by maximizing their value, ensuring their stability, providing regulatory oversight, and effectively managing the day-to-day operations of their business. Our portfolio represents a wide range of clients from small/medium sized operations to large Fortune 500 companies across a broad variety of industries. We attribute our continued success to our understanding of our clients' governance, risk management and compliance issues; our embracement of the latest technology and most of all, our focus on quality client service and maintaining healthy long-term relationships. Skills and experience that will lead to success: An internationally recognized relevant qualification (accounting, insurance, ERM, compliance or actuarial); Deep understanding of the Bermuda (or similar) regulatory environment and a minimum of 5 years' experience; Experience in designing, implementing and monitoring/reporting of governance, risk and compliance frameworks for re/insurance companies; Exceptional stakeholder management skills, with the confidence and presence to interact with C-suite executives, board members and regulators; Strong interpersonal and collaboration skills in relationship building for business development and retention in the international arena; Strong analytical, problem-solving and critical thinking skills, with the ability to translate complex regulatory and risk concepts into clear, practical recommendations; A strong track record of excellent client service including a commitment to providing timely results, even when a fast turnaround is required; Prior consulting or advisory experience (e.g., with a professional service, Big 4, or specialist advisory firm) is strongly preferred and will be a distinct advantage; Excellent project management skills, highly self-directed and organized, with the ability to manage multiple clients and deliverables in a dynamic, deadline-driven environment; Excellent written, communication, and presentation skills, and the ability to effectively interact with internal and client senior management; Demonstrated commercial mindset, with an interest in leading and growing a practice and contributing to revenue generation. Skills: Risk Management Systems, Project Proposals, Financial Statements, Client Relationship Management, Customer Relationship Management (CRM), Captive Insurance, Account Management Disclaimer: As per Immigration Law, first preference will be given to suitable Bermudians, Spouses of Bermudians, or PRC holders. Applications must include a detailed resume with references. Closing Date: Saturday, August 29, 2026 P.O. Box HM 2450, Hamilton HMJX
Anson McCade
Operational Cyber Software Engineer
Anson McCade City, London
Operational Cyber Software Engineer Locations: Gloucester, Manchester or London (Onsite) Employment Type: Full-time or Part-time About the Role We're looking for experienced Software Engineers to join a specialist cyber team delivering high-assurance software for complex security challenges click apply for full job details
Aug 24, 2026
Full time
Operational Cyber Software Engineer Locations: Gloucester, Manchester or London (Onsite) Employment Type: Full-time or Part-time About the Role We're looking for experienced Software Engineers to join a specialist cyber team delivering high-assurance software for complex security challenges click apply for full job details
Cyber Security Technical Consultant
Different Technologies Pty Ltd. Cheltenham, Gloucestershire
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
Aug 24, 2026
Full time
Daintta are a rapidly growing, values-driven team of specialists who work with government clients across Cyber, Telecommunications and Data. We are seeking a talented and motivated Cyber Security Technical Security Consultant to join our team and contribute to our mission of protecting the UK through data-driven insights and solutions. As a technical Consultant, you will be expected to demonstrate versatility as you work closely with our public sector clients, governmental departments and project teams. You will be expected to help design, document, and build secure networks or systems: solving some of the UK's most exciting cyber security challenges. What's in it for you? You will be joining the company at Daintta "Consultant" grade. In addition to being rewarded fairly for your contribution to the business, you get to work in a dynamic organisation that is agile and responsive. A business that is growing fast and where you get to drive and shape the future. A place where you are respected by everyone and your voice is important. Somewhere where you can be innovative and creative. A place where you have the opportunity to learn about all aspects of business from marketing to sales, to delivery and business operations. Key Responsibilities Developing, justifying and implementing organisational and system security management strategies that address risk and control requirements, ensuring a UK Gov't Secure by Design approach Selecting, understanding and adapting/adopting appropriate security control frameworks Identifying security risk business and stakeholder security requirements and proposing proportionate assessment, design and implementation of secure systems to meet the requirements Performing threat modelling and risk assessments to develop a holistic picture of threat Ensuring security principles are applied during solution planning, design, test, deployment and operations to reduce risk and ensure compliance, including: Developing or supporting the development of secure solution designs to mitigate the risks posed by new technologies and business practices Supporting third-party and supply chain security assessments, including vendor due diligence, secure procurement, software supply chain risk and ongoing assurance of externally sourced technology Applying identity-led and zero trust security principles, including strong authentication, least privilege, contextual access control and segmentation of services, users and devices Defining and reviewing security assurance activities, including design assurance, verification, validation, vulnerability assessment, penetration testing inputs and interpretation of assurance evidence Developing and communicating corporate and domain information security policy, standards, guidelines and design guardrails Identifying and monitoring environmental and market trends and proactively assessing impact on business strategies, benefits and risks Assessing your client's' needs, understanding how their needs may differ from their wants, and appropriately managing stakeholder relationships Delivering high-quality work to agreed milestones, and adapting quickly to unfamiliar client environments. Supporting the technical aspects of client engagements, including pitches and presentations Helping to support & grow Daintta by actively inputting into the company strategy and helping to shape our future Representing us and our core values: Transparency, fairness and being daring. Skills/Knowledge You have relevant and recent practical experience in cyber security engineering, architecture, design or technical assurance, and can apply that knowledge credibly in client-facing consulting engagements You have worked in technical client deliveries across a range of cyber security related projects You understand technical controls and business risk You can demonstrate working-level experience in one or more of the following domains: Security Architecture; Security Operations; Identity & Access Management; Cloud, Infrastructure and Platform Security; Network and Connectivity Security; Application Security and DevSecOps; Data Security and Privacy; Governance, Risk & Compliance; You have experience embedding security into agile, DevSecOps and iterative delivery models, including design reviews, security requirements management and pragmatic risk treatment in fast-moving projects You have experience working with security control standards and frameworks e.g. ISO27001, NIST, NCSC guidance and NCSC CAF, JSP 440 or others You have demonstrable continuous personal development, supported by relevant certifications and accreditations You have good interpersonal skills at both the business and technical level You have UK security clearance at SC or above or are eligible and willing to go through clearance You have experience working with security controls within cloud-based infrastructure (e.g Azure, AWS, GCP). This may include design, configuration, or protective monitoring. Knowledge of digital identity and authentication systems Experience applying data classification, handling requirements, data residency and sovereignty considerations to solution design, particularly where sensitive, regulated or operationally critical data is involved Understanding of security risks and controls for AI-enabled systems, including data governance, access control, prompt injection, model misuse, third-party AI services and monitoring of sensitive data exposure Application and governance of fine grained access control and permissions Experience in UK Gov't public sector or defence Location? Hybrid, with 2-3 days working from Daintta office or on client site as required. We believe in supporting our people both professionally and personally. Here's what you can expect when you join us: Time Off: 25 days annual leave, plus bank holidays Up to 5 days annual training leave with a dedicated training budget Up to 3 days annual volunteering leave - give back to the community Competitive maternity, paternity, shared parental leave & compassionate leave Employee Assistance Programme - 24/7 support services £2,000 Flex Cash Allowance, paid pro-rata over the year Discretionary company awards and bonuses, based on performance and company targets Professional Development Up to £1,000 annual training budget (access to additional training and development budget via business case) Up to 5 days annual training leave 1 professional membership paid annually Up to £200 of additional IT budget for new joiners Free breakfast every Tuesday in the London office Fortnightly drinks - in London Regular social events, quizzes, and guest workshops Huckletree perks - including gym and restaurant discounts Employee referral programme Monthly breakfast club in our Cheltenham office Security Information Due to clients' requirements, all applications are strictly subject to security clearance requirements relevant to the role.
UKCSC Principal or Chartered Professional - Governance and Risk
Jackalope Digital LLC
Intelance is an independent UK advisory and assurance firm and an IASME Certification Body for Cyber Essentials, Cyber Essentials Plus and IASME Cyber Assurance. We work with mid-market, enterprise and regulated organisations across cyber assurance, governance, risk and technology. We are appointing professionals who already hold formal UK Cyber Security Council (UKCSC) registration in Cyber Security Governance and Risk Management at Principal or Chartered level, to join our associate panel and support the assessment and advisory of large, complex organisations. This is not permanent employment. Work is offered on a project-by-project basis according to client demand, suitability and availability. There is no guaranteed volume of work. Please note: current UKCSC registration in Cyber Security Governance and Risk Management at Principal or Chartered level is an essential requirement for this role. Applications without it will not be progressed. Tasks You may be asked to: Lead independent cyber governance and risk reviews for large, complex and regulated organisations. Assess risk appetite, risk ownership, control effectiveness and risk-treatment decisions. Review policies, risk registers, control mappings, assurance evidence and governance arrangements. Judge whether evidence supports the conclusions presented to senior leaders. Explain cyber risks and control gaps clearly to boards, executives and non-technical stakeholders. Lead interviews and workshops with CISOs, risk owners and control owners. Produce clear, defensible, client-ready governance and risk reports. Complete scheme-specific training and participate in internal quality reviews where required. Requirements You must hold: Current UK Cyber Security Council (UKCSC) professional registration in Cyber Security Governance and Risk Management at Principal or Chartered level. This is mandatory and will be verified. You should also have: Substantial senior experience in cyber governance, risk management or formal cyber assurance. Experience advising boards, executive teams or senior risk committees in large or regulated organisations. Practical knowledge of recognised frameworks such as ISO 27001, NIST CSF, Cyber Essentials or equivalent. Excellent written English and the ability to challenge weak evidence respectfully. CISM, CRISC, CISA and ISO 27001 Lead Auditor or Lead Implementer are welcome but do not replace the UKCSC registration requirement. You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement. Benefits Senior cyber governance, risk and assurance assignments. Flexible associate working based on your availability. Direct access to Intelance leadership. Work with experienced governance, architecture and technical-assurance specialists. Clear scopes, templates and quality-review arrangements. Potential inclusion in Intelance proposals and associate credentials, subject to agreement. Please provide: Your CV and LinkedIn profile. Your UK Cyber Security Council registration: specialism, level (Principal or Chartered) and your registration number or public UKCSC profile link. Your location, availability and expected day rate. One example of a difficult enterprise cyber-risk decision you personally led. Details of any relevant Cyber Essentials, IASME, ISO 27001 or risk qualifications.
Aug 24, 2026
Full time
Intelance is an independent UK advisory and assurance firm and an IASME Certification Body for Cyber Essentials, Cyber Essentials Plus and IASME Cyber Assurance. We work with mid-market, enterprise and regulated organisations across cyber assurance, governance, risk and technology. We are appointing professionals who already hold formal UK Cyber Security Council (UKCSC) registration in Cyber Security Governance and Risk Management at Principal or Chartered level, to join our associate panel and support the assessment and advisory of large, complex organisations. This is not permanent employment. Work is offered on a project-by-project basis according to client demand, suitability and availability. There is no guaranteed volume of work. Please note: current UKCSC registration in Cyber Security Governance and Risk Management at Principal or Chartered level is an essential requirement for this role. Applications without it will not be progressed. Tasks You may be asked to: Lead independent cyber governance and risk reviews for large, complex and regulated organisations. Assess risk appetite, risk ownership, control effectiveness and risk-treatment decisions. Review policies, risk registers, control mappings, assurance evidence and governance arrangements. Judge whether evidence supports the conclusions presented to senior leaders. Explain cyber risks and control gaps clearly to boards, executives and non-technical stakeholders. Lead interviews and workshops with CISOs, risk owners and control owners. Produce clear, defensible, client-ready governance and risk reports. Complete scheme-specific training and participate in internal quality reviews where required. Requirements You must hold: Current UK Cyber Security Council (UKCSC) professional registration in Cyber Security Governance and Risk Management at Principal or Chartered level. This is mandatory and will be verified. You should also have: Substantial senior experience in cyber governance, risk management or formal cyber assurance. Experience advising boards, executive teams or senior risk committees in large or regulated organisations. Practical knowledge of recognised frameworks such as ISO 27001, NIST CSF, Cyber Essentials or equivalent. Excellent written English and the ability to challenge weak evidence respectfully. CISM, CRISC, CISA and ISO 27001 Lead Auditor or Lead Implementer are welcome but do not replace the UKCSC registration requirement. You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement. Benefits Senior cyber governance, risk and assurance assignments. Flexible associate working based on your availability. Direct access to Intelance leadership. Work with experienced governance, architecture and technical-assurance specialists. Clear scopes, templates and quality-review arrangements. Potential inclusion in Intelance proposals and associate credentials, subject to agreement. Please provide: Your CV and LinkedIn profile. Your UK Cyber Security Council registration: specialism, level (Principal or Chartered) and your registration number or public UKCSC profile link. Your location, availability and expected day rate. One example of a difficult enterprise cyber-risk decision you personally led. Details of any relevant Cyber Essentials, IASME, ISO 27001 or risk qualifications.
UKCSC Principal or Chartered Professional - Governance and Risk
Cybermindspace
Intelance is an independent UK advisory and assurance firm and an IASME Certification Body for Cyber Essentials, Cyber Essentials Plus and IASME Cyber Assurance. We work with mid-market, enterprise and regulated organisations across cyber assurance, governance, risk and technology. We are appointing professionals who already hold formal UK Cyber Security Council (UKCSC) registration in Cyber Security Governance and Risk Management at Principal or Chartered level, to join our associate panel and support the assessment and advisory of large, complex organisations. This is not permanent employment. Work is offered on a project-by-project basis according to client demand, suitability and availability. There is no guaranteed volume of work. Please note: current UKCSC registration in Cyber Security Governance and Risk Management at Principal or Chartered level is an essential requirement for this role. Applications without it will not be progressed. Tasks You may be asked to: Lead independent cyber governance and risk reviews for large, complex and regulated organisations. Assess risk appetite, risk ownership, control effectiveness and risk-treatment decisions. Review policies, risk registers, control mappings, assurance evidence and governance arrangements. Judge whether evidence supports the conclusions presented to senior leaders. Explain cyber risks and control gaps clearly to boards, executives and non-technical stakeholders. Lead interviews and workshops with CISOs, risk owners and control owners. Produce clear, defensible, client-ready governance and risk reports. Complete scheme-specific training and participate in internal quality reviews where required. Requirements You must hold: Current UK Cyber Security Council (UKCSC) professional registration in Cyber Security Governance and Risk Management at Principal or Chartered level. This is mandatory and will be verified. You should also have: Substantial senior experience in cyber governance, risk management or formal cyber assurance. Experience advising boards, executive teams or senior risk committees in large or regulated organisations. Practical knowledge of recognised frameworks such as ISO 27001, NIST CSF, Cyber Essentials or equivalent. Excellent written English and the ability to challenge weak evidence respectfully. CISM, CRISC, CISA and ISO 27001 Lead Auditor or Lead Implementer are welcome but do not replace the UKCSC registration requirement. You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement. Benefits Senior cyber governance, risk and assurance assignments. Flexible associate working based on your availability. Direct access to Intelance leadership. Work with experienced governance, architecture and technical-assurance specialists. Clear scopes, templates and quality-review arrangements. Potential inclusion in Intelance proposals and associate credentials, subject to agreement.
Aug 24, 2026
Full time
Intelance is an independent UK advisory and assurance firm and an IASME Certification Body for Cyber Essentials, Cyber Essentials Plus and IASME Cyber Assurance. We work with mid-market, enterprise and regulated organisations across cyber assurance, governance, risk and technology. We are appointing professionals who already hold formal UK Cyber Security Council (UKCSC) registration in Cyber Security Governance and Risk Management at Principal or Chartered level, to join our associate panel and support the assessment and advisory of large, complex organisations. This is not permanent employment. Work is offered on a project-by-project basis according to client demand, suitability and availability. There is no guaranteed volume of work. Please note: current UKCSC registration in Cyber Security Governance and Risk Management at Principal or Chartered level is an essential requirement for this role. Applications without it will not be progressed. Tasks You may be asked to: Lead independent cyber governance and risk reviews for large, complex and regulated organisations. Assess risk appetite, risk ownership, control effectiveness and risk-treatment decisions. Review policies, risk registers, control mappings, assurance evidence and governance arrangements. Judge whether evidence supports the conclusions presented to senior leaders. Explain cyber risks and control gaps clearly to boards, executives and non-technical stakeholders. Lead interviews and workshops with CISOs, risk owners and control owners. Produce clear, defensible, client-ready governance and risk reports. Complete scheme-specific training and participate in internal quality reviews where required. Requirements You must hold: Current UK Cyber Security Council (UKCSC) professional registration in Cyber Security Governance and Risk Management at Principal or Chartered level. This is mandatory and will be verified. You should also have: Substantial senior experience in cyber governance, risk management or formal cyber assurance. Experience advising boards, executive teams or senior risk committees in large or regulated organisations. Practical knowledge of recognised frameworks such as ISO 27001, NIST CSF, Cyber Essentials or equivalent. Excellent written English and the ability to challenge weak evidence respectfully. CISM, CRISC, CISA and ISO 27001 Lead Auditor or Lead Implementer are welcome but do not replace the UKCSC registration requirement. You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement. Benefits Senior cyber governance, risk and assurance assignments. Flexible associate working based on your availability. Direct access to Intelance leadership. Work with experienced governance, architecture and technical-assurance specialists. Clear scopes, templates and quality-review arrangements. Potential inclusion in Intelance proposals and associate credentials, subject to agreement.
EHS & Facilities Business Leader
Prattwhitney
Date Posted: 2026-08-21 Country: United Kingdom Location: Ayrshire, South Ayrshire Position Role Type: Onsite At RTX, the world's largest aerospace and defence company, 185,000 great minds are united by purpose and inspired to make a difference by solving the world's most complex problems. With our three market-leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunities no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world. Collins Aerospace is a leader in technologically advanced, intelligent solutions that help redefine the aerospace and defence industry. With a comprehensive portfolio and deep technical expertise, we help customers meet the demands of the global market. Join us and help shape the future of aerospace and defence. At Prestwick Service Centre, we are specialists in the maintenance, repair and overhaul of aircraft engine nacelle systems and engine components. As part of our continued growth, we require experienced individuals who will contribute to our success while upholding our reputation as a leading provider of quality MRO services to our European and Middle Eastern customers. A fantastic opportunity has arisen within our EHS team for a dynamic individual looking to take on a new challenge in their career. We are seeking to recruit an EHS & Facilities Business Leader. This is an onsite role located within our Prestwick facility, Scotland, UK. What You Will Do: Lead and own the site's EHS and Facilities strategy, ensuring alignment with Collins Aerospace, regulatory and business requirements, and promoting a proactive culture of safety, environmental responsibility and continuous improvement. Act as the primary site point of contact for EHS, providing expert advice and guidance to leaders and employees while driving ownership and accountability across the organisation. Ensure compliance with applicable EHS legislation, regulatory requirements and company standards, including environmental compliance, regulatory reporting and submissions. Develop, maintain and continuously improve EHS management systems, plans, procedures and programmes, including risk assessment, ergonomics, confined spaces, respiratory protection, electrical safety and contractor safety. Lead EHS performance management, including metrics, audits, incident and near-miss investigations, root cause analysis and effective corrective and preventative actions. Own the site's EHS training and communication strategy, ensuring employees and leaders have the appropriate knowledge, competence and awareness. Lead the Facilities function, ensuring buildings, infrastructure, utilities, services and the workplace environment are safe, compliant, reliable and fit for purpose. Develop and manage facilities maintenance and improvement programmes, balancing safety, operational requirements, cost and long-term asset performance. Oversee facilities contractors and service providers, ensuring appropriate standards, permits, controls and performance management are in place. Support capital projects, site modifications and improvement programmes, ensuring EHS and Facilities requirements are incorporated from design through to completion. Ensure effective emergency preparedness, business continuity and site resilience arrangements, while partnering with business and functional leaders to identify and address EHS and Facilities risks and opportunities. Build effective relationships with internal stakeholders, regulatory bodies, contractors and specialist departments to achieve and maintain compliance. Drive the use of digital solutions, data and analytics to improve EHS and Facilities visibility, compliance, decision-making and operational efficiency. Identify and deliver opportunities for continuous improvement, cost reduction and sustainable performance, while ensuring compliance with all Collins Aerospace policies and procedures, including EHS, Code of Ethics, Intellectual Property and International Trade Compliance requirements. Qualifications You Must Have: Degree qualified in an EHS, Engineering, Facilities Management or related discipline, or equivalent relevant professional experience. Proven experience leading both EHS and Facilities functions, ideally within a manufacturing, engineering, aerospace or similarly regulated environment. Strong knowledge of UK EHS legislation, regulatory requirements and industry best practice. Strong leadership, communication and influencing skills, with the ability to engage effectively with employees at all levels and influence senior stakeholders. Qualifications We Prefer: Experience developing and implementing EHS management systems, with demonstrable experience in risk management, compliance, auditing, incident investigation and continuous improvement. Experience leading facilities operations, including infrastructure, utilities, maintenance, workplace environment and facilities service providers. Proven experience managing contractors and third-party service providers within a controlled or regulated environment. Strong organisational and project management skills, with the ability to manage competing priorities across EHS and Facilities. Strong digital and analytical capability, including experience with Microsoft Office and relevant EHS and Facilities management systems. A proactive, pragmatic and solutions-focused approach, with the confidence to challenge where required and drive sustainable improvements. Initiative, enthusiasm and the ability to work effectively both independently and as part of the Site Leadership Team. A strong commitment to creating a safe, compliant, efficient and high-performing workplace. What We Can Offer You: Competitive Compensation Package 25 days Annual Leave + Public Holidays + option to buy / sell up to 5 days per year Generous Employer Contribution Pension Scheme with 2:1 matched contributions up to 10% Private Medical Insurance Health & Wellbeing Cash Plan - (dental/optical/therapy/chiropody/health screening) Life Assurance & Group Income protection scheme participation Professional Development & Growth Support with professional fees Employee Assistance Program (EAP) Employee Discounts & Flexible Benefits Platform Employee Recognition & Referral Bonuses and much more! This position is classified as: Onsite: Employees who are working in onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products. Candidates will learn more about role type and current site status throughout the recruiting process. For onsite and hybrid roles, commuting to and from the assigned site is the employee's personal responsibility. RTX adheres to the principles of equal employment. All qualified applications will be given careful consideration without regard to ethnicity, color, religion, gender, sexual orientation or identity, national origin, age, disability, protected veteran status or any other characteristic protected by law. Privacy Policy and Terms: Click on this link to read the Policy and Terms RTX is an aerospace and defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises three industry-leading businesses - Collins Aerospace, Pratt & Whitney, and Raytheon. Its 195,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity. The company, formed in 2020 through the combination of Raytheon Company and the United Technologies Corporation aerospace businesses, is headquartered in Arlington, Virginia.
Aug 24, 2026
Full time
Date Posted: 2026-08-21 Country: United Kingdom Location: Ayrshire, South Ayrshire Position Role Type: Onsite At RTX, the world's largest aerospace and defence company, 185,000 great minds are united by purpose and inspired to make a difference by solving the world's most complex problems. With our three market-leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunities no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world. Collins Aerospace is a leader in technologically advanced, intelligent solutions that help redefine the aerospace and defence industry. With a comprehensive portfolio and deep technical expertise, we help customers meet the demands of the global market. Join us and help shape the future of aerospace and defence. At Prestwick Service Centre, we are specialists in the maintenance, repair and overhaul of aircraft engine nacelle systems and engine components. As part of our continued growth, we require experienced individuals who will contribute to our success while upholding our reputation as a leading provider of quality MRO services to our European and Middle Eastern customers. A fantastic opportunity has arisen within our EHS team for a dynamic individual looking to take on a new challenge in their career. We are seeking to recruit an EHS & Facilities Business Leader. This is an onsite role located within our Prestwick facility, Scotland, UK. What You Will Do: Lead and own the site's EHS and Facilities strategy, ensuring alignment with Collins Aerospace, regulatory and business requirements, and promoting a proactive culture of safety, environmental responsibility and continuous improvement. Act as the primary site point of contact for EHS, providing expert advice and guidance to leaders and employees while driving ownership and accountability across the organisation. Ensure compliance with applicable EHS legislation, regulatory requirements and company standards, including environmental compliance, regulatory reporting and submissions. Develop, maintain and continuously improve EHS management systems, plans, procedures and programmes, including risk assessment, ergonomics, confined spaces, respiratory protection, electrical safety and contractor safety. Lead EHS performance management, including metrics, audits, incident and near-miss investigations, root cause analysis and effective corrective and preventative actions. Own the site's EHS training and communication strategy, ensuring employees and leaders have the appropriate knowledge, competence and awareness. Lead the Facilities function, ensuring buildings, infrastructure, utilities, services and the workplace environment are safe, compliant, reliable and fit for purpose. Develop and manage facilities maintenance and improvement programmes, balancing safety, operational requirements, cost and long-term asset performance. Oversee facilities contractors and service providers, ensuring appropriate standards, permits, controls and performance management are in place. Support capital projects, site modifications and improvement programmes, ensuring EHS and Facilities requirements are incorporated from design through to completion. Ensure effective emergency preparedness, business continuity and site resilience arrangements, while partnering with business and functional leaders to identify and address EHS and Facilities risks and opportunities. Build effective relationships with internal stakeholders, regulatory bodies, contractors and specialist departments to achieve and maintain compliance. Drive the use of digital solutions, data and analytics to improve EHS and Facilities visibility, compliance, decision-making and operational efficiency. Identify and deliver opportunities for continuous improvement, cost reduction and sustainable performance, while ensuring compliance with all Collins Aerospace policies and procedures, including EHS, Code of Ethics, Intellectual Property and International Trade Compliance requirements. Qualifications You Must Have: Degree qualified in an EHS, Engineering, Facilities Management or related discipline, or equivalent relevant professional experience. Proven experience leading both EHS and Facilities functions, ideally within a manufacturing, engineering, aerospace or similarly regulated environment. Strong knowledge of UK EHS legislation, regulatory requirements and industry best practice. Strong leadership, communication and influencing skills, with the ability to engage effectively with employees at all levels and influence senior stakeholders. Qualifications We Prefer: Experience developing and implementing EHS management systems, with demonstrable experience in risk management, compliance, auditing, incident investigation and continuous improvement. Experience leading facilities operations, including infrastructure, utilities, maintenance, workplace environment and facilities service providers. Proven experience managing contractors and third-party service providers within a controlled or regulated environment. Strong organisational and project management skills, with the ability to manage competing priorities across EHS and Facilities. Strong digital and analytical capability, including experience with Microsoft Office and relevant EHS and Facilities management systems. A proactive, pragmatic and solutions-focused approach, with the confidence to challenge where required and drive sustainable improvements. Initiative, enthusiasm and the ability to work effectively both independently and as part of the Site Leadership Team. A strong commitment to creating a safe, compliant, efficient and high-performing workplace. What We Can Offer You: Competitive Compensation Package 25 days Annual Leave + Public Holidays + option to buy / sell up to 5 days per year Generous Employer Contribution Pension Scheme with 2:1 matched contributions up to 10% Private Medical Insurance Health & Wellbeing Cash Plan - (dental/optical/therapy/chiropody/health screening) Life Assurance & Group Income protection scheme participation Professional Development & Growth Support with professional fees Employee Assistance Program (EAP) Employee Discounts & Flexible Benefits Platform Employee Recognition & Referral Bonuses and much more! This position is classified as: Onsite: Employees who are working in onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products. Candidates will learn more about role type and current site status throughout the recruiting process. For onsite and hybrid roles, commuting to and from the assigned site is the employee's personal responsibility. RTX adheres to the principles of equal employment. All qualified applications will be given careful consideration without regard to ethnicity, color, religion, gender, sexual orientation or identity, national origin, age, disability, protected veteran status or any other characteristic protected by law. Privacy Policy and Terms: Click on this link to read the Policy and Terms RTX is an aerospace and defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises three industry-leading businesses - Collins Aerospace, Pratt & Whitney, and Raytheon. Its 195,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity. The company, formed in 2020 through the combination of Raytheon Company and the United Technologies Corporation aerospace businesses, is headquartered in Arlington, Virginia.
Enterprise Recruitment Ltd
Linux Administrator
Enterprise Recruitment Ltd Cambridge, Cambridgeshire
This role requires the expertise of a Linux Administrator to support and develop Linux infrastructure and enterprise networking within a highly technical engineering environment. You will join a skilled Infrastructure Team responsible for designing, implementing and supporting Linux systems across both corporate and secure environments. Working closely with engineers, project teams and cyber security specialists, you will play a key role in delivering reliable, secure and scalable infrastructure that supports critical business and client projects. The team is responsible for a broad range of technologies and services, providing Linux and networking expertise across the business. Alongside supporting existing infrastructure, you will help drive continuous improvement and contribute to the development of modern, secure infrastructure solutions. This is an excellent opportunity to join a growing technology company where you will have genuine ownership, a varied workload and the chance to influence how Linux and network services are delivered across the organisation. Linux Administrator essential Requirements: Strong Linux administration experience (physical and virtual) Debian or Red Hat Linux distributions Networking knowledge Strong troubleshooting and problem-solving skills Understanding of Linux security Knowledge of infrastructure automation tools such as Ansible, Landscape, Foreman or Satellite Experience with scripting or programming for administration and automation tasks Appreciation of secure-by-design and DevOps principles Position : Linux Administrator Location : Cambridge Salary : 40-55k Benefits: Profit share scheme, Pension, Life assurance, Private medical insurance, Free lunch and refreshments), 25 days holiday, Relocation assistance Apply: jamie AT enterpriserecruitment DOT com
Aug 22, 2026
Full time
This role requires the expertise of a Linux Administrator to support and develop Linux infrastructure and enterprise networking within a highly technical engineering environment. You will join a skilled Infrastructure Team responsible for designing, implementing and supporting Linux systems across both corporate and secure environments. Working closely with engineers, project teams and cyber security specialists, you will play a key role in delivering reliable, secure and scalable infrastructure that supports critical business and client projects. The team is responsible for a broad range of technologies and services, providing Linux and networking expertise across the business. Alongside supporting existing infrastructure, you will help drive continuous improvement and contribute to the development of modern, secure infrastructure solutions. This is an excellent opportunity to join a growing technology company where you will have genuine ownership, a varied workload and the chance to influence how Linux and network services are delivered across the organisation. Linux Administrator essential Requirements: Strong Linux administration experience (physical and virtual) Debian or Red Hat Linux distributions Networking knowledge Strong troubleshooting and problem-solving skills Understanding of Linux security Knowledge of infrastructure automation tools such as Ansible, Landscape, Foreman or Satellite Experience with scripting or programming for administration and automation tasks Appreciation of secure-by-design and DevOps principles Position : Linux Administrator Location : Cambridge Salary : 40-55k Benefits: Profit share scheme, Pension, Life assurance, Private medical insurance, Free lunch and refreshments), 25 days holiday, Relocation assistance Apply: jamie AT enterpriserecruitment DOT com
Ganymede Solutions
Cyber Security Engineer
Ganymede Solutions Middleton St. George, County Durham
Cyber Security Contractor Rate: £500.00 - £550.00p/d (Outside IR35) North Yorkshire Are you an experienced Cyber Security professional with a background in Defence or regulated industrial environments, looking for a hands-on contract where you can lead the security workstream on a genuinely high-profile project? Do you enjoy working across the full lifecycle, from threat modelling and risk assessment through to customer-facing assurance documentation? My client is an established manufacturer of precision technology, delivering solutions used across a range of regulated sectors including defence, energy, and industrial environments. They've built a strong reputation for reliability and operational integrity, with products used in demanding and safety-critical settings. Lead Cyber Security Delivery on a Live MOD Project This is a hands-on contract covering the full cyber-security workstream for a specialist monitoring and alarm system, delivered in line with the MOD Secure by Design (SbD) approach. You'll be joining at the software delivery stage, with the architectural design already complete, and will take ownership of security from requirements through to implementation, test and handover. You'll be working closely with a small, focused project team, including a Project Manager and Lead Engineer, reporting into the Embedded Software Engineering Manager. Your responsibilities: Your day-to-day work will involve identifying vulnerabilities and developing the project's risk assessment, threat model and security architecture, ensuring security risks are proportionately treated and clearly evidenced. You'll be advising engineering teams on security controls across IT, OT and industrial control-system environments, reviewing system architecture, network design, access management and logging arrangements. You'll also produce a significant volume of customer-facing documentation, including security requirements, risk assessments, design documentation and assurance material, and will support engagement with MOD stakeholders and assurance functions throughout the project. What We're Looking For To be successful in this role, you'll need proven experience delivering cyber security and assurance work within MOD, Defence, government or other regulated industrial environments, along with practical experience applying MOD Secure by Design principles. You should be confident carrying out cyber risk assessment, threat modelling and security requirements engineering, with a solid understanding of OT/ICS security (PLC, HMI, SCADA) and how it interacts with safety and availability. Strong documentation and stakeholder-management skills are essential, along with the ability to work autonomously and explain security requirements pragmatically to non-specialists. You'll need to be eligible to work on UK Defence projects and hold the required security clearance (SC). Why Apply? This is a genuine opportunity to lead cyber security delivery on a fascinating, high-integrity Defence project, for a well-established business with a strong reputation in precision sensing technology. You'll be working in a fully office-based, close-knit team environment, with real ownership over the project's security workstream from this stage through to handover. Ganymede is committed to creating a diverse workforce and is an equal opportunities employer. We welcome applications from all suitably qualified persons regardless of age, disability, gender, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, and sexual orientation
Aug 22, 2026
Contractor
Cyber Security Contractor Rate: £500.00 - £550.00p/d (Outside IR35) North Yorkshire Are you an experienced Cyber Security professional with a background in Defence or regulated industrial environments, looking for a hands-on contract where you can lead the security workstream on a genuinely high-profile project? Do you enjoy working across the full lifecycle, from threat modelling and risk assessment through to customer-facing assurance documentation? My client is an established manufacturer of precision technology, delivering solutions used across a range of regulated sectors including defence, energy, and industrial environments. They've built a strong reputation for reliability and operational integrity, with products used in demanding and safety-critical settings. Lead Cyber Security Delivery on a Live MOD Project This is a hands-on contract covering the full cyber-security workstream for a specialist monitoring and alarm system, delivered in line with the MOD Secure by Design (SbD) approach. You'll be joining at the software delivery stage, with the architectural design already complete, and will take ownership of security from requirements through to implementation, test and handover. You'll be working closely with a small, focused project team, including a Project Manager and Lead Engineer, reporting into the Embedded Software Engineering Manager. Your responsibilities: Your day-to-day work will involve identifying vulnerabilities and developing the project's risk assessment, threat model and security architecture, ensuring security risks are proportionately treated and clearly evidenced. You'll be advising engineering teams on security controls across IT, OT and industrial control-system environments, reviewing system architecture, network design, access management and logging arrangements. You'll also produce a significant volume of customer-facing documentation, including security requirements, risk assessments, design documentation and assurance material, and will support engagement with MOD stakeholders and assurance functions throughout the project. What We're Looking For To be successful in this role, you'll need proven experience delivering cyber security and assurance work within MOD, Defence, government or other regulated industrial environments, along with practical experience applying MOD Secure by Design principles. You should be confident carrying out cyber risk assessment, threat modelling and security requirements engineering, with a solid understanding of OT/ICS security (PLC, HMI, SCADA) and how it interacts with safety and availability. Strong documentation and stakeholder-management skills are essential, along with the ability to work autonomously and explain security requirements pragmatically to non-specialists. You'll need to be eligible to work on UK Defence projects and hold the required security clearance (SC). Why Apply? This is a genuine opportunity to lead cyber security delivery on a fascinating, high-integrity Defence project, for a well-established business with a strong reputation in precision sensing technology. You'll be working in a fully office-based, close-knit team environment, with real ownership over the project's security workstream from this stage through to handover. Ganymede is committed to creating a diverse workforce and is an equal opportunities employer. We welcome applications from all suitably qualified persons regardless of age, disability, gender, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, and sexual orientation
Head of Health, Safety, Compliance & Assurance
Syme Solutions Ltd.
Vehicle allowance Company pension scheme. Professional membership fees paid. Funded continuing professional development. Support towards Chartered status and advanced qualifications. Role This is a rare opportunity to take ownership of Health, Safety, Quality, Environmental, Information Security and Corporate Compliance across a growing specialist contractor delivering complex projects throughout the UK. Reporting directly to the Directors, you will play a pivotal role in shaping the company's governance framework, strengthening their compliance culture and supporting the next phase of business growth across Defence, Government, Critical National Infrastructure and commercial sectors. This role offers far more than traditional Health & Safety management. It is an opportunity to influence strategic decision-making, modernise assurance processes and build an integrated compliance function that enables safe, secure and successful project delivery. Their teams work within some of the UK's most complex and security-sensitive environments, including Defence establishments, Government facilities, Critical National Infrastructure sites and operational commercial environments. Responsibilities You will act as the principal advisor to the Board on matters relating to: Health & Safety Corporate Governance Principal Contractor Compliance CDM Regulations Integrated Management Systems ISO Compliance Information Security Risk Management Environmental Performance Internal and External Auditing Accreditation and Certification Supply Chain Assurance Training and Competence You will work collaboratively with Directors, managers, employees, subcontractors and clients to ensure compliance is embedded into everyday decision-making and operational delivery. Key Responsibilities Strategic Leadership Lead and develop the company's Health, Safety, Quality, Environmental and Information Security strategy Provide expert advice and guidance to Directors and senior leadership teams. Promote a positive, proactive and accountable compliance culture. Ensure legal, contractual and regulatory obligations are effectively managed. Integrated Management Systems Own and continually improve the company's Integrated Management System. Lead compliance with ISO 9001, ISO 14001, ISO 45001 and ISO 27001. Ensure ongoing certification readiness and continual improvement. Health, Safety and CDM Compliance Act as the company's competent Health & Safety adviser. Support the business in delivering its duties as Principal Contractor. Provide leadership on CDM compliance across projects. Lead incident investigations, corrective actions and organisational learning initiatives. Governance, Assurance and Audit Develop and deliver risk-based audit programmes. Lead internal and external assurance activities. Manage certification bodies, client audits and compliance assessments. Produce meaningful compliance reporting and dashboards for senior leadership. Information Security and Corporate Compliance Support the development and maintenance of ISO 27001 certification. Strengthen information security, governance and business resilience arrangements. Support compliance with Defence, Government and client-specific requirements. Maintain effective corporate governance and risk management frameworks. People, Culture and Capability Oversee competence management and compliance training programmes. Develop leadership accountability across all levels of the business. Build employee engagement and ownership of compliance responsibilities. Foster a culture of continual improvement and operational excellence. Requirement You are an experienced Health, Safety and Compliance leader who combines technical expertise with commercial awareness and practical problem solving skills. You are comfortable operating at Board level whilst remaining engaged with operational delivery and project teams. You understand how robust governance, effective assurance and strong leadership can support business growth, protect reputation and improve client confidence. Experience within regulated industries such as construction, infrastructure, telecommunications, utilities, Defence or Critical National Infrastructure would be highly advantageous. Essential NEBOSH Diploma or equivalent Level 6 Health & Safety qualification. Chartered IOSH membership or demonstrable progression toward Chartered status. Significant senior level Health, Safety and Compliance leadership experience. Strong knowledge of CDM Regulations and Principal Contractor responsibilities. Experience managing Integrated Management Systems. Practical experience of ISO 9001, ISO 14001 and ISO 45001. Working knowledge of ISO 27001 and Information Security governance. Experience leading audit, compliance and assurance programmes. Strong stakeholder management and communication skills. Full UK Driving Licence and willingness to travel throughout the UK. Desirable Chartered IOSH status. Lead Auditor qualifications. Experience working within Defence or Government environments. Knowledge of UK Government Security requirements. Experience with Cyber Essentials Plus. Previous responsibility for corporate governance and business assurance functions. Experience within telecommunications, infrastructure, civil engineering or secure communications sectors. Security Clearance Current security clearance is not essential; however, candidates must be eligible and willing to undergo UK Government Security Vetting and satisfy the requirements for Developed Vetting where required by the role, project or client. You will work directly with company leadership, support major programmes within Defence and Critical National Infrastructure, and help create the governance framework that supports future growth.
Aug 22, 2026
Full time
Vehicle allowance Company pension scheme. Professional membership fees paid. Funded continuing professional development. Support towards Chartered status and advanced qualifications. Role This is a rare opportunity to take ownership of Health, Safety, Quality, Environmental, Information Security and Corporate Compliance across a growing specialist contractor delivering complex projects throughout the UK. Reporting directly to the Directors, you will play a pivotal role in shaping the company's governance framework, strengthening their compliance culture and supporting the next phase of business growth across Defence, Government, Critical National Infrastructure and commercial sectors. This role offers far more than traditional Health & Safety management. It is an opportunity to influence strategic decision-making, modernise assurance processes and build an integrated compliance function that enables safe, secure and successful project delivery. Their teams work within some of the UK's most complex and security-sensitive environments, including Defence establishments, Government facilities, Critical National Infrastructure sites and operational commercial environments. Responsibilities You will act as the principal advisor to the Board on matters relating to: Health & Safety Corporate Governance Principal Contractor Compliance CDM Regulations Integrated Management Systems ISO Compliance Information Security Risk Management Environmental Performance Internal and External Auditing Accreditation and Certification Supply Chain Assurance Training and Competence You will work collaboratively with Directors, managers, employees, subcontractors and clients to ensure compliance is embedded into everyday decision-making and operational delivery. Key Responsibilities Strategic Leadership Lead and develop the company's Health, Safety, Quality, Environmental and Information Security strategy Provide expert advice and guidance to Directors and senior leadership teams. Promote a positive, proactive and accountable compliance culture. Ensure legal, contractual and regulatory obligations are effectively managed. Integrated Management Systems Own and continually improve the company's Integrated Management System. Lead compliance with ISO 9001, ISO 14001, ISO 45001 and ISO 27001. Ensure ongoing certification readiness and continual improvement. Health, Safety and CDM Compliance Act as the company's competent Health & Safety adviser. Support the business in delivering its duties as Principal Contractor. Provide leadership on CDM compliance across projects. Lead incident investigations, corrective actions and organisational learning initiatives. Governance, Assurance and Audit Develop and deliver risk-based audit programmes. Lead internal and external assurance activities. Manage certification bodies, client audits and compliance assessments. Produce meaningful compliance reporting and dashboards for senior leadership. Information Security and Corporate Compliance Support the development and maintenance of ISO 27001 certification. Strengthen information security, governance and business resilience arrangements. Support compliance with Defence, Government and client-specific requirements. Maintain effective corporate governance and risk management frameworks. People, Culture and Capability Oversee competence management and compliance training programmes. Develop leadership accountability across all levels of the business. Build employee engagement and ownership of compliance responsibilities. Foster a culture of continual improvement and operational excellence. Requirement You are an experienced Health, Safety and Compliance leader who combines technical expertise with commercial awareness and practical problem solving skills. You are comfortable operating at Board level whilst remaining engaged with operational delivery and project teams. You understand how robust governance, effective assurance and strong leadership can support business growth, protect reputation and improve client confidence. Experience within regulated industries such as construction, infrastructure, telecommunications, utilities, Defence or Critical National Infrastructure would be highly advantageous. Essential NEBOSH Diploma or equivalent Level 6 Health & Safety qualification. Chartered IOSH membership or demonstrable progression toward Chartered status. Significant senior level Health, Safety and Compliance leadership experience. Strong knowledge of CDM Regulations and Principal Contractor responsibilities. Experience managing Integrated Management Systems. Practical experience of ISO 9001, ISO 14001 and ISO 45001. Working knowledge of ISO 27001 and Information Security governance. Experience leading audit, compliance and assurance programmes. Strong stakeholder management and communication skills. Full UK Driving Licence and willingness to travel throughout the UK. Desirable Chartered IOSH status. Lead Auditor qualifications. Experience working within Defence or Government environments. Knowledge of UK Government Security requirements. Experience with Cyber Essentials Plus. Previous responsibility for corporate governance and business assurance functions. Experience within telecommunications, infrastructure, civil engineering or secure communications sectors. Security Clearance Current security clearance is not essential; however, candidates must be eligible and willing to undergo UK Government Security Vetting and satisfy the requirements for Developed Vetting where required by the role, project or client. You will work directly with company leadership, support major programmes within Defence and Critical National Infrastructure, and help create the governance framework that supports future growth.
Cost Assurance Consultant
Snc-Lavalin
Job Description Overview Become a vital member of our Complex Projects, Delivery Partner team, proudly taking on some of the world's most exciting and prestigious projects. Join us, and you'll be part of our genuinely collaborative environment, where everyone is supported to make the most of their talents. It's about recognising everyone's contributions equally while delivering excellence together. When you join our practice team, you'll share our vision to be the industry's foremost capability in Estimating & Cost Advisory and always doing what's right. Enjoy a diverse and exciting workload surrounded by talented colleagues ready to lend a hand. You'll support multi-disciplinary and specialist project teams on high-profile schemes across a range of sectors, delivering high impact estimating services to a range of key clients. Plus, you'll have the opportunity to grow your career and develop our internal capabilities. We are looking to hire a Cost Assurance Consultant - Cost Verification and Assurance to support our growing business. In Complex Projects we work across three major markets: Infrastructure (Water, Defence, Aviation, etc.). Transport (Rail, Highways, Local Authorities, etc.). Energy (Nuclear, Renewable Energy, Power, etc.). Your role Provide cost verification, audit and assurance activities, including forensic reviews across large-scale complex infrastructure projects. Support and deliver evaluation of cost data and structures, assessing them against contractual/commercial principles. Analyse supplier cost data to identify patterns, themes, trends and risks. Provide detailed cost verification, payroll audits and wider data sampling for targeted audit activities. Assess and appraise cost capture and commercial management processes. Identify supplier commercial process improvement opportunities for improved commercial governance and cost control. Interpret and advise on contract documentation, particularly under NEC4 contracts. Engage with client teams, contractors and other project stakeholders to complete cost verification/substantiation together with obtaining key documentation and data. Deliver high-quality assurance reports and present those findings to senior stakeholders. Support the presentation of outputs and recommendations to clients and their wider supply chain. Support the integration of innovative digital tools for data analysis and reporting. About you Demonstratable experience of delivering cost and commercial assurance/audit activities. Competent in the interpretation of a wide range of contracts, with experience in the application of the principles of a schedule of cost components. Experienced and comfortable analysing large data sets as well as experience of different costing systems. The ability to interrogate and assess data sets and produce outputs that can be used in the decision-making process. Bachelor's degree in an Estimating, Quantity Surveying, Engineering, Construction sectors or Equivalent Work Experience. Chartership with or demonstrably working towards RICS, ICE, AACE, ACostE or similar. Good working knowledge of NEC3/4 suit of contracts across all option types. Ability to work autonomously in a fast-paced environment, working through challenges as they develop during the delivery stage. Strong report writing and presentation skills. Excellent communication skills both verbal and written. Experience of working within a client organisation, either directly or through a colocation/secondment arrangement. Rewards & benefits Explore the rewards and benefits that help you thrive - at every stage of your life and your career. Enjoy competitive salaries, employee rewards and a brilliant range of benefits you can tailor to suit your own health, wellbeing, financial and lifestyle choices. Make the most of a myriad of opportunities for training and professional development to grow your skills and expertise. And combine our hybrid working culture and flexible holiday allowances to balance a great job and fulfilling personal life. Be rewarded. About AtkinsRéalis We're AtkinsRéalis, a world-class engineering services and nuclear organization. We connect people, data and technology to transform the world's infrastructure and energy systems. Together, with our industry partners and clients, and our global team of consultants, designers, engineers and project managers, we can change the world. We're committed to leading our clients across our various end markets to engineer a better future for our planet and its people. Additional information Security Clearance This role may require security clearance and offers of employment will be dependent on obtaining the relevant level of clearance. If this is necessary, it will be discussed with you at interview. The vetting process is delivered by United Kingdom Security Vetting (UKSV) and may require candidates to provide proof of residency in the UK of 5 years or longer. We are committed to creating a culture where everyone feels that they belong - a place where we can all be ourselves, thrive and develop to be the best we can be. So, we offer a range of family friendly, inclusive employment policies, flexible working arrangements and employee resource groups to support all employees. As an Equal Opportunities Employer, we value applications from all backgrounds, cultures and ability. As a Disability Confident Leader, we are committed to offering an interview to all applicants who have a disability and meet the essential criteria. Worker Type Employee Job Type Regular At AtkinsRéalis At AtkinsRéalis, we seek to hire individuals with diverse characteristics, backgrounds and perspectives. We strongly believe that world-class talent makes no distinctions based on gender, ethnic or national origin, sexual identity and orientation, age, religion or disability, but enriches itself through these differences. Created by the integration of long-standing organizations dating back to 1911, AtkinsRéalis is a world-class engineering services and nuclear company dedicated to engineering a better future for our planet and its people. We create sustainable solutions that connect people, data and technology to transform the world's infrastructure and energy systems. We deploy global capabilities locally to our clients and deliver unique end-to-end services across the whole life cycle of an asset including consulting, advisory & environmental services, intelligent networks & cybersecurity, design & engineering, procurement, project & construction management, operations & maintenance, decommissioning and capital. The breadth and depth of our capabilities are delivered to clients in strategic sectors such as Engineering Services, Nuclear and Capital. News and information are available at Atkinsrealis or follow us on LinkedIn.
Aug 21, 2026
Full time
Job Description Overview Become a vital member of our Complex Projects, Delivery Partner team, proudly taking on some of the world's most exciting and prestigious projects. Join us, and you'll be part of our genuinely collaborative environment, where everyone is supported to make the most of their talents. It's about recognising everyone's contributions equally while delivering excellence together. When you join our practice team, you'll share our vision to be the industry's foremost capability in Estimating & Cost Advisory and always doing what's right. Enjoy a diverse and exciting workload surrounded by talented colleagues ready to lend a hand. You'll support multi-disciplinary and specialist project teams on high-profile schemes across a range of sectors, delivering high impact estimating services to a range of key clients. Plus, you'll have the opportunity to grow your career and develop our internal capabilities. We are looking to hire a Cost Assurance Consultant - Cost Verification and Assurance to support our growing business. In Complex Projects we work across three major markets: Infrastructure (Water, Defence, Aviation, etc.). Transport (Rail, Highways, Local Authorities, etc.). Energy (Nuclear, Renewable Energy, Power, etc.). Your role Provide cost verification, audit and assurance activities, including forensic reviews across large-scale complex infrastructure projects. Support and deliver evaluation of cost data and structures, assessing them against contractual/commercial principles. Analyse supplier cost data to identify patterns, themes, trends and risks. Provide detailed cost verification, payroll audits and wider data sampling for targeted audit activities. Assess and appraise cost capture and commercial management processes. Identify supplier commercial process improvement opportunities for improved commercial governance and cost control. Interpret and advise on contract documentation, particularly under NEC4 contracts. Engage with client teams, contractors and other project stakeholders to complete cost verification/substantiation together with obtaining key documentation and data. Deliver high-quality assurance reports and present those findings to senior stakeholders. Support the presentation of outputs and recommendations to clients and their wider supply chain. Support the integration of innovative digital tools for data analysis and reporting. About you Demonstratable experience of delivering cost and commercial assurance/audit activities. Competent in the interpretation of a wide range of contracts, with experience in the application of the principles of a schedule of cost components. Experienced and comfortable analysing large data sets as well as experience of different costing systems. The ability to interrogate and assess data sets and produce outputs that can be used in the decision-making process. Bachelor's degree in an Estimating, Quantity Surveying, Engineering, Construction sectors or Equivalent Work Experience. Chartership with or demonstrably working towards RICS, ICE, AACE, ACostE or similar. Good working knowledge of NEC3/4 suit of contracts across all option types. Ability to work autonomously in a fast-paced environment, working through challenges as they develop during the delivery stage. Strong report writing and presentation skills. Excellent communication skills both verbal and written. Experience of working within a client organisation, either directly or through a colocation/secondment arrangement. Rewards & benefits Explore the rewards and benefits that help you thrive - at every stage of your life and your career. Enjoy competitive salaries, employee rewards and a brilliant range of benefits you can tailor to suit your own health, wellbeing, financial and lifestyle choices. Make the most of a myriad of opportunities for training and professional development to grow your skills and expertise. And combine our hybrid working culture and flexible holiday allowances to balance a great job and fulfilling personal life. Be rewarded. About AtkinsRéalis We're AtkinsRéalis, a world-class engineering services and nuclear organization. We connect people, data and technology to transform the world's infrastructure and energy systems. Together, with our industry partners and clients, and our global team of consultants, designers, engineers and project managers, we can change the world. We're committed to leading our clients across our various end markets to engineer a better future for our planet and its people. Additional information Security Clearance This role may require security clearance and offers of employment will be dependent on obtaining the relevant level of clearance. If this is necessary, it will be discussed with you at interview. The vetting process is delivered by United Kingdom Security Vetting (UKSV) and may require candidates to provide proof of residency in the UK of 5 years or longer. We are committed to creating a culture where everyone feels that they belong - a place where we can all be ourselves, thrive and develop to be the best we can be. So, we offer a range of family friendly, inclusive employment policies, flexible working arrangements and employee resource groups to support all employees. As an Equal Opportunities Employer, we value applications from all backgrounds, cultures and ability. As a Disability Confident Leader, we are committed to offering an interview to all applicants who have a disability and meet the essential criteria. Worker Type Employee Job Type Regular At AtkinsRéalis At AtkinsRéalis, we seek to hire individuals with diverse characteristics, backgrounds and perspectives. We strongly believe that world-class talent makes no distinctions based on gender, ethnic or national origin, sexual identity and orientation, age, religion or disability, but enriches itself through these differences. Created by the integration of long-standing organizations dating back to 1911, AtkinsRéalis is a world-class engineering services and nuclear company dedicated to engineering a better future for our planet and its people. We create sustainable solutions that connect people, data and technology to transform the world's infrastructure and energy systems. We deploy global capabilities locally to our clients and deliver unique end-to-end services across the whole life cycle of an asset including consulting, advisory & environmental services, intelligent networks & cybersecurity, design & engineering, procurement, project & construction management, operations & maintenance, decommissioning and capital. The breadth and depth of our capabilities are delivered to clients in strategic sectors such as Engineering Services, Nuclear and Capital. News and information are available at Atkinsrealis or follow us on LinkedIn.
Matchtech
Cyber Security Contractors - SC Cleared
Matchtech
Cyber Security Contractors (Multiple Opportunities) SC Cleared 594/day Remote UK Location: UK Remote (occasional client-site visits required) Contract: Inside IR35 Rate: 594 per day (Umbrella) Duration: Until March 2027 Security Clearance: Active SC Clearance Required We are supporting a major, long-term Cyber Security Programme and are seeking experienced SC-cleared professionals across several specialist disciplines. These are excellent opportunities to join a high-profile programme delivering critical security services within a complex environment. Opportunities Available Security Architect (Cloud Security) Key responsibilities include: Cloud security architecture and design assurance Security assessments and risk reviews Development and implementation of security standards, patterns, and best practices Collaboration with technical and business stakeholders to ensure secure-by-design solutions Experience required: Strong cloud security architecture background Experience with enterprise cloud platforms (AWS, Azure, or GCP) Security design and assurance expertise Knowledge of security frameworks and standards Security Operations Analyst Key responsibilities include: Security operations monitoring and analysis Cyber threat intelligence assessment Threat modelling and risk identification Incident investigation and security event analysis Experience required: Security Operations Centre (SOC) or cyber defence experience Hands-on threat intelligence and analysis capability Threat modelling expertise Strong understanding of cyber security technologies and processes Threat Intelligence Analyst Key responsibilities include: Production of threat intelligence reports and assessments Analysis of Indicators of Compromise (IOCs) and Tactics, Techniques & Procedures (TTPs) Tracking emerging cyber threats and threat actors Supporting security architecture and operational security decision-making Experience required: Proven cyber threat intelligence background Experience analysing threat actor activity and attack methodologies Strong reporting and stakeholder engagement skills Knowledge of intelligence frameworks such as MITRE ATT&CK Information Assurance Consultant Key responsibilities include: Information Assurance (IA) and Governance, Risk & Compliance (GRC) activities Quality assurance and quality management support Business Continuity and Disaster Recovery (BCDR) planning and assessment Policy, controls, and compliance reviews Experience required: Strong IA/GRC experience Knowledge of security governance frameworks Experience in quality management and assurance activities BCDR planning and implementation expertise Essential Requirements Active SC Clearance (mandatory) Proven experience within the relevant cyber security discipline Ability to work effectively in complex stakeholder environments Strong communication and reporting skills
Aug 20, 2026
Contractor
Cyber Security Contractors (Multiple Opportunities) SC Cleared 594/day Remote UK Location: UK Remote (occasional client-site visits required) Contract: Inside IR35 Rate: 594 per day (Umbrella) Duration: Until March 2027 Security Clearance: Active SC Clearance Required We are supporting a major, long-term Cyber Security Programme and are seeking experienced SC-cleared professionals across several specialist disciplines. These are excellent opportunities to join a high-profile programme delivering critical security services within a complex environment. Opportunities Available Security Architect (Cloud Security) Key responsibilities include: Cloud security architecture and design assurance Security assessments and risk reviews Development and implementation of security standards, patterns, and best practices Collaboration with technical and business stakeholders to ensure secure-by-design solutions Experience required: Strong cloud security architecture background Experience with enterprise cloud platforms (AWS, Azure, or GCP) Security design and assurance expertise Knowledge of security frameworks and standards Security Operations Analyst Key responsibilities include: Security operations monitoring and analysis Cyber threat intelligence assessment Threat modelling and risk identification Incident investigation and security event analysis Experience required: Security Operations Centre (SOC) or cyber defence experience Hands-on threat intelligence and analysis capability Threat modelling expertise Strong understanding of cyber security technologies and processes Threat Intelligence Analyst Key responsibilities include: Production of threat intelligence reports and assessments Analysis of Indicators of Compromise (IOCs) and Tactics, Techniques & Procedures (TTPs) Tracking emerging cyber threats and threat actors Supporting security architecture and operational security decision-making Experience required: Proven cyber threat intelligence background Experience analysing threat actor activity and attack methodologies Strong reporting and stakeholder engagement skills Knowledge of intelligence frameworks such as MITRE ATT&CK Information Assurance Consultant Key responsibilities include: Information Assurance (IA) and Governance, Risk & Compliance (GRC) activities Quality assurance and quality management support Business Continuity and Disaster Recovery (BCDR) planning and assessment Policy, controls, and compliance reviews Experience required: Strong IA/GRC experience Knowledge of security governance frameworks Experience in quality management and assurance activities BCDR planning and implementation expertise Essential Requirements Active SC Clearance (mandatory) Proven experience within the relevant cyber security discipline Ability to work effectively in complex stakeholder environments Strong communication and reporting skills
Supply Chain Resilience SME
SSR G&M
Supply Chain Resilience SME London/Middlesex - Hybrid, 6-Month Fixed Term Contract (possibility of extension) Are you a supply chain resilience expert with a passion for safeguarding critical national capabilities? We're seeking a Supply Chain Resilience SME to join a highly respected UK public body that plays a vital role in supporting national priorities, security, and resilience. In this senior specialist position, you will help ensure that critical materials, technologies, and services remain secure, reliable, and resilient in an increasingly complex global environment. The Role As the subject matter expert for supply chain resilience, you will: Lead supply chain resilience strategies across complex technical and operational supply chains. Identify vulnerabilities, dependencies, supplier concentration risks, and single points of failure. Assess geopolitical, regulatory, cyber, and market-driven threats that could impact critical supply. Develop mitigation strategies, alternative sourcing approaches, supplier assurance frameworks, and contingency plans. Support procurement and commercial teams with supplier due diligence and risk-based decision making. Lead response activities during supply chain disruptions and drive recovery planning. Engage with senior stakeholders, government bodies, industry partners, and specialist suppliers to strengthen resilience across critical national programmes. About You You'll bring: Deep expertise in supply chain risk, resilience, assurance, and business continuity. Experience gained within Defence, Critical National Infrastructure, Manufacturing, Engineering, Logistics, or similarly regulated environments. Strong understanding of complex technical supply chains and supplier risk management. Experience assessing geopolitical, cyber, regulatory, and operational risks. Exceptional stakeholder management and communication skills, with the ability to translate complex risks into actionable recommendations. Current SC/DV Security Clearance. Why Apply? This is a unique opportunity to play a key role in protecting critical national capabilities and supporting programmes that have a meaningful impact on the UK's security, prosperity, and long-term resilience. You'll work with senior leaders and industry partners to shape resilience strategies that matter.
Aug 20, 2026
Full time
Supply Chain Resilience SME London/Middlesex - Hybrid, 6-Month Fixed Term Contract (possibility of extension) Are you a supply chain resilience expert with a passion for safeguarding critical national capabilities? We're seeking a Supply Chain Resilience SME to join a highly respected UK public body that plays a vital role in supporting national priorities, security, and resilience. In this senior specialist position, you will help ensure that critical materials, technologies, and services remain secure, reliable, and resilient in an increasingly complex global environment. The Role As the subject matter expert for supply chain resilience, you will: Lead supply chain resilience strategies across complex technical and operational supply chains. Identify vulnerabilities, dependencies, supplier concentration risks, and single points of failure. Assess geopolitical, regulatory, cyber, and market-driven threats that could impact critical supply. Develop mitigation strategies, alternative sourcing approaches, supplier assurance frameworks, and contingency plans. Support procurement and commercial teams with supplier due diligence and risk-based decision making. Lead response activities during supply chain disruptions and drive recovery planning. Engage with senior stakeholders, government bodies, industry partners, and specialist suppliers to strengthen resilience across critical national programmes. About You You'll bring: Deep expertise in supply chain risk, resilience, assurance, and business continuity. Experience gained within Defence, Critical National Infrastructure, Manufacturing, Engineering, Logistics, or similarly regulated environments. Strong understanding of complex technical supply chains and supplier risk management. Experience assessing geopolitical, cyber, regulatory, and operational risks. Exceptional stakeholder management and communication skills, with the ability to translate complex risks into actionable recommendations. Current SC/DV Security Clearance. Why Apply? This is a unique opportunity to play a key role in protecting critical national capabilities and supporting programmes that have a meaningful impact on the UK's security, prosperity, and long-term resilience. You'll work with senior leaders and industry partners to shape resilience strategies that matter.

Modal Window

  • Home
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Google Plus
  • LinkedIn
Parent and Partner sites: IT Job Board | Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | Construction Job Board | Property jobs | myJobsnearme.com | Jobs near me
© 2008-2026 Jobsite Jobs | Designed by Web Design Agency